MDDI スピーチ · 2025-03-07
SMS Janil Puthucheary による歳出委員会審議 2025 でのスピーチ
要点
- • 政府は今年、Digital Infrastructure Act を導入する計画です。主要なクラウドサービスプロバイダーおよびデータセンターを対象に、レジリエンス(強靭性)とセキュリティ対策の義務化、ならびに障害報告の義務付けを目的としています。
- • 中央政府システムの可用性は過去1年間で95%から99.5%へと向上し、各サービスの重要度に応じて調整された稼働監視ツールへの投資が引き続き行われています。
- • IMDA は Nationwide Broadband Network のアップグレードに最大1億シンガポールドルを投資しており、現在の家庭用レベルと比べて最大10倍の通信速度を実現します。10 Gbps プランの価格は現在 S$30〜S$70 となっており、1年前の S$100 超から大幅に引き下げられています。
- • IMDA は2024年12月に Green Data Centre Roadmap およびエネルギー効率化助成金(Energy Efficiency Grant)を開始しました。シンガポールの気候目標を達成しながら、データセンターが持続可能な AI 演算の成長に向けて移行できるよう導くことを目的としています。
- • セキュアな生成 AI アシスタントである Pair Chat は公務員の半数以上に活用されており、政府全体を対象としたプロンプトエンジニアリング競技会には1,040名を超える職員が参加しました。なお、1位は SCDF の消防士が獲得しています。
- • GovTech 主催の初開催となる LAUNCH! ハッカソンプログラムでは、公務員から600件を超えるアイデアが集まり、小学校教員が共同開発した AI 口頭フィードバックツールを含む26点の革新的なプロトタイプが生み出されました。
- • GovTech は、政府の生成 AI アプリケーションが国民にとって安全に利用できるよう、二つの AI 安全性プラットフォームを構築しています。一つは安全性・セキュリティテスト用の Litmus(IMDA の Moonshot と共同開発)であり、もう一つはガードレール・アズ・ア・サービスを提供する Sentinel です。
全文翻訳
MDDI 英語原文の翻訳 · 翻訳日: 2026-06-21
1. 議長、ありがとうございます。議員各位によるカットおよびご質問に感謝申し上げます。本日の答弁では、Jessica Tan 議員、Tin Pei Ling 議員、Ong Hua Han 議員、Sharael Taha 議員、Dennis Tan 議員、および Mariam Jaafar 議員から提出されたカットに対応できればと思います。
2. 議長、信頼はわれわれの Smart Nation の取り組みの中核をなすものです。市民および企業は、自らが依存するデジタルシステムやサービス、また日々行う各種のやり取りや取引が信頼できるものであると確信できなければなりません。
3. 本日は、重要なデジタルインフラのレジリエンス・セキュリティ・将来対応力を確保し、公益のために政府の AI 導入とイノベーションを推進することを通じて、この信頼を構築するための MDDI のアプローチについて説明いたします。
重要なデジタルインフラおよびサービスのレジリエンスとセキュリティの維持
4. 政府は、サイバー攻撃やサービス障害を含む、デジタルインフラおよびサービスへのリスクを低減するための既存の規制を有しています。例えば:
a. 電気通信法(Telecommunications Act)に基づき、IMDA はブロードバンドおよびモバイルネットワーク事業者に対し、障害を最小化するための積極的な措置を講じることを求めています。
b. また、金融機関に対する MAS の IT レジリエンスおよびセキュリティ要件など、デジタルサービスに関するセクター別の規制も存在します。
5. しかし、デジタルの世界はさらに広大であり、絶えず進化し続けています。データセンターやクラウドサービスといったデジタルインフラは、電子バンキングと決済、ライドヘイリング、電子商取引、デジタルアイデンティティなど、多くの機能を支える上で重要な存在となっています。これらの機能によって、市民は日常的なニーズを便利かつ効果的に満たすことができます。また、企業の成長を支援するものでもあります。しかしながら、デジタルインフラの規模と複雑性の増大は、サイバー攻撃に対する攻撃対象領域の拡大を意味するとともに、ハードウェア障害・設定ミス・その他の問題に起因する障害リスクの高まりをもたらしています。こうした障害が発生した場合、サービスの利用が増加していることを踏まえると、その影響はより大きくなります。
6. 昨年、われわれはわれわれの運用環境における新たな課題に対処するため、サイバーセキュリティ法(Cybersecurity Act)を改正しました。
a. これらの改正は今年後半に施行される見込みであり、サイバーセキュリティ庁(CSA)が、重要情報インフラ(Critical Information Infrastructure)を超えた重要な主体およびシステムのサイバーセキュリティをより適切に確保できるよう権限を付与するものです。これには、データセンターやクラウドサービスが含まれます。これにより、シンガポールおよびわれわれのデジタル経済に対する信頼と確信が向上します。また、重要情報インフラの所有者には、ビジネスモデルを見直す機会もあると期待しています。商業クラウドソリューションなどの新技術の活用を視野に入れた形でビジネスモデルを見直すよう促されることを望んでいます。
7. サイバー脅威を超えて、われわれは火災のような物理的なハザード、またハードウェア障害やシステムの設定ミスのような目に見えにくいリスクを含む、デジタルインフラおよびサービスへのアクセスを妨げるリスクに対しても警戒しなければなりません。
8. これらは、デジタルインフラおよびサービスへの依存の結果生じるリスクです。リスクを完全に排除することはできないため、障害の発生とその影響を軽減することによって、われわれの備えを強化しなければなりません。
9. われわれは今年、デジタルインフラ法(Digital Infrastructure Act)と呼ばれる新たな法律の導入に向けて取り組んでいます。これにより、シンガポールのデジタルレジリエンスとセキュリティが向上します。同法は、主要なクラウドサービスプロバイダーおよびデータセンターを起点として、基盤的なデジタルインフラを対象としています。
a. 同法は、主要な事業者に対し、レジリエンスとセキュリティを維持し、障害を最小化するための措置を講じることを義務付けます。
b. われわれは、主要な事業者が政府に障害を報告することを義務付ける要件を検討しており、これによってこれらのインシデントからより良く学び改善を図るとともに、必要に応じて対応・復旧の取り組みを支援できるようにします。
c. われわれは、2024年半ばより、デジタルインフラプロバイダーおよびその一部の顧客からフィードバックを求めてきました。
10. 情報通信メディア開発庁(Infocomm Media Development Authority)、すなわち IMDA は、クラウドサービスプロバイダーおよびデータセンター向けの諮問ガイドライン(Advisory Guidelines)を最近公表しました。これらのガイドラインには、われわれがステークホルダーと協議してきた主要な措置が盛り込まれています。
a. 同ガイドラインは、データセンター事業者に対し、強固な事業継続システムを構築し、エンタープライズ顧客に対して高可用性を確保するよう奨励しています。
b. クラウドサービスプロバイダーも、データセキュリティリスクを管理し、事業継続計画を確保するよう奨励されています。
c. すべての事業者が措置を実施するよう奨励されており、Microsoft・Equinix・Keppel を含む多くのプロバイダーおよびそのエンタープライズ顧客が、新たな諮問ガイドラインを目的に適い、かつ国際標準に沿ったものとして、支持を表明しています。
11. われわれはまた、シンガポール国民がオンラインで政府とやり取りする際に信頼と確信を持てるよう、政府システムのレジリエンス強化にも取り組んでいます。
a. われわれは、各省庁が使用する中央システムのレジリエンスを改善しました。これらのシステムのサービス可用性は、昨年の 95% から 99.5% へと向上しました。システムの稼働時間を監視するツールを含む、政府アプリケーションのレジリエンスを向上させるためのツールの導入を引き続き拡大してまいります。
b. レジリエンス対策にはコストが伴うため、われわれのアプローチは適切に調整される必要があります。われわれは、重要なサービスを提供する省庁が、適切な場合においてより高度な措置を実施できるよう支援してまいります。
12. 個人に関する情報は詐欺の手口に悪用される可能性があるため、政府はそうした情報へのアクセスを管理する必要があります。
a. われわれは、個人データを含むデータが慎重かつ責任を持って管理されることを確保することにコミットしています。
b. データを含むデジタルサービスの政府による提供において、各省庁は、MDDI が提供するガイドラインおよびセーフガードに沿って、サービスアクセシビリティとデータ保護という二重の目標を達成するため、各ユースケースにおけるメリットとリスクの適切なバランスを評価しなければなりません。
わが国のデジタルインフラの将来対応力の確保
13. 議長、わが国のデジタルインフラは、安全でレジリエントであるだけでなく、シンガポールを将来に向けて位置づけるものでなければなりません。
14. 昨年、われわれは IMDA が全国ブロードバンドネットワーク(NBN)のアップグレードに最大 1 億ドルを投資することを発表しました。これにより、現在ほとんどの家庭が利用しているブロードバンド速度の最大 10 倍の高速化が実現します。
a. 事業者は、より高速なブロードバンドサービスをより低価格で提供し始めています。10 Gig プランの価格は現在 30 ドルから 70 ドルとなっており、1 年前の 100 ドル超と比較して大幅に低下しています。
15. 将来に備えたデジタルインフラの整備は、成長を追求する中でリソース上の制約への対処をも伴います。気候変動に関するコミットメントを堅持しつつシンガポールのAI推進目標を支援する方策を模索するとともに、デジタルインフラの拡充と環境の持続可能性のバランスを図ることが不可欠です。
a. IMDAは昨年、データセンターが省エネルギーを推進しグリーンエネルギーを活用することで、AI算出能力を持続可能な形で拡大するよう導くため、Green Data Centre Roadmapを策定・公表しました。着実な進展が見られます。例えば、BCA-IMDA Green Mark(データセンター向け)は昨年10月に刷新され、データセンターの持続可能性に関する基準が引き上げられました。また、IMDAは昨年12月にデータセンターセクター向けEnergy Efficiency Grantを開始し、より省エネルギー性能の高いIT機器への企業の移行を支援しています。
b. MDDIは、規制を通じてデータセンターの持続可能性をさらに高める方策を検討しています。他の法域における取り組みを調査するとともに、シンガポールの実情に即したフレームワークを策定すべく、業界との対話を初期段階から進めています。
デジタル・ガバメントを新たな形で実践する
16. 議長、私たちはデジタル・ガバメントとして率先垂範しなければなりません。公共部門がAIを創出・実験する能力を継続的に構築し、市民中心のソリューションを実現し続けることが必要です。
a. 公共サービス内において、最高水準のAIおよびLLM(大規模言語モデル)ツールへのアクセスを提供しています。Pair Chatは、現在、公共サービス従事者の半数以上が利用する迅速かつ安全な生成AIアシスタントです。昨年は政府全体を対象としたプロンプトエンジニアリングコンテストを開催し、1,040名を超える職員が参加しました。このことを申し上げられること自体、私たちの「デジタル・ガバメント」の進め方が非常に特異であることを示しています——政府内でプロンプトエンジニアリングコンテストを実施し、1,040名の職員が参加したという事実がまさにその証左です。決勝進出者はLLMツールを使用して10分以内にイベント告知ウェブサイトを構築するよう課題を与えられました。このコンテストの優勝者は、SCDFの消防士であるMuhammad Naim Bin Zahariです。彼はコンテスト当日、24時間シフトを終えたばかりでした。2位はMOMの財務担当職員であるRachel Tiangでした。2人ともAIを専門とする技術職ではありませんでしたが、両名をはじめとするすべての参加者が、AIおよびLLMを活用したツールを使って10分以内にこの機能的な告知ウェブサイトを構築する十分な能力を有していました。
b. 私たちは、技術職以外の公務員もデジタルプロダクトの創出に積極的に参加させています。昨年、GovTechは公務員を対象としたハッカソンシリーズ「LAUNCH! Programme」を初めて開催しました。このプログラムでは600件を超えるアイデアが集まり、26件の革新的なプロトタイプが生まれました。例えば、小学校教師2名とGovTech職員1名のチームが、口頭表現スキルのパフォーマンスに対する即時のカスタマイズされたフィードバックを生徒に提供するAIツールのプロトタイプを開発しました。
c. また、職員がAIを活用してより優れた成果をより迅速に生み出す方法についても探求しています。最近開催されたHack for Public Goodハッカソンから生まれたプロトタイプの一つが、公務員にとってプロトタイプ開発の心理的ハードルを下げるツール「Spaceship」です。Spaceshipにより、職員はAIエージェントを活用して、LLMベースのツールを含む完全に機能するプロトタイプアプリケーションをビルド・デプロイすることができます。これはすべて平易な英語で行います。技術職以外の公務員が、平易な英語だけを使ってアイデアから実用的なアプリを数分で実現できるツールです。私もこのプロトタイプを試用し、MP(国会議員)の発言時間を制限するポータルのコーディングを依頼しました。適切なフィルターをスプレッドシートに設定することはできましたが、それが現時点における技術の限界だと思います。
17. 政府におけるAI活用を拡大するにあたり、AIアプリケーションに伴うリスクを把握し軽減することが不可欠です。GovTechは、政府の生成AIアプリケーションが安全に市場提供されるよう、その能力構築に取り組んでいます。
a. AIの安全性およびセキュリティテスト用ツールとして「Litmus」があります。AIアプリケーションが利用者を誤導したり評判を損なうリスクに対して耐性を持つよう、テスト一式を精選しました。LitmusはIMDAのMoonshotとの連携で構築されており、本年中に正式公開される予定です。各政府機関との試験運用を通じて、Litmusが安全性に関わる潜在的な問題を事前に特定し、先手を打った対応を可能にすることが確認されています。本質的には、AIテスティング・アズ・ア・サービスです。
b. LitmusはAIリスクの診断を提供しますが、リスクが検出された後の解決策も必要です。AIの世界では、ガードレールがAIシステムを倫理的・法的・機能的な境界内で動作させる役割を担います。私たちは、政府のAIアプリケーションにガードレール・アズ・ア・サービスを提供するプラットフォーム「Sentinel」を構築中です。プロダクトチームは、主要なAI開発者が提供するものやLionGuardのようなローカライズされたものを含む精選されたガードレールのリストから選択し、容易に自らのアプリケーションに組み込むことができます。Sentinelは、システムへの侵入試みやAIモデルに不適切な出力をさせようとする試みを正確に識別することができています。
c. LitmusとSentinelは、市民を含むすべての利用者にとって安全に使用できる政府の生成AIアプリケーションを開発するという私たちの方針を体現しています。
結論
18. 議長、私たちのデジタルインフラは、市民や企業が依存する重要な機能を支えています。そのため、主要なデジタルインフラのセキュリティ、レジリエンス、将来対応力の強化に積極的に投資してきました。また、シンガポール市民により良いサービスを提供するべく、公共部門における能力構築を継続し、AIを活用した実験と革新を積極的に取り入れています。Smart Nationの歩みを続ける中で、これが私たちのデジタルな未来への信頼を醸成することを期待しています。
19. ありがとうございました。
英語原文
MDDI 公式サイト原文 · 取得日: 2026-06-21
1. Thank you, Mr Chairman. I thank the Members for their cuts and questions, and I hope in my response today to be addressing cuts filed by Ms Jessica Tan, Ms Tin Pei Ling, Mr Ong Hua Han, Mr Sharael Taha, Mr Dennis Tan and Ms Mariam Jaafar.
2. Sir, trust is at the heart of our Smart Nation efforts. Our citizens and businesses must be confident that the digital systems and services that they rely on, and the interactions and transactions that they engage in, can be trusted.
3. I will explain MDDI’s approach to building this trust: by ensuring the resilience, security and future-readiness of key digital infrastructure, and by driving Government AI adoption and innovation for the public good.
Upholding Resilience and Security of Key Digital Infrastructure and Services
4. The Government has existing regulations to reduce risks to digital infrastructure and services, including cyber-attacks and service disruptions. For example:
a. Under the Telecommunications Act, IMDA requires broadband and mobile network operators to take proactive measures to minimise disruptions.
b. There are also sectoral regulations for digital services, such as MAS’ IT resilience and security requirements for financial institutions.
5. But the digital landscape is much bigger, and constantly evolving. Digital infrastructure like data centres and cloud services have become important in enabling many functions including e-banking and payments, ride-hailing, e-commerce, and digital identity. These functions allow citizens to meet their day-to-day needs and do so conveniently and effectively. They help businesses to grow. However, the growing scale and complexity of our digital infrastructure also mean an increased surface area for cyber-attacks, and a higher risk of disruptions arising from hardware failures, misconfigurations, and other problems. Should these disruptions occur, the impact is higher given the increasing utilisation of these services.
6. Last year, we amended the Cybersecurity Act to address new challenges in our operating environment.
a. These amendments, which are expected to come into force later this year, will empower CSA, the Cybersecurity Agency, to better ensure the cybersecurity of important entities and systems beyond the Critical Information Infrastructure. These include data centres and cloud services. This in turn improves trust and confidence in Singapore and our digital economy. Owners of Critical Information Infrastructure also have the opportunity, we hope, to review their business models. We hope that they will be encouraged to review their business models and do so with a view to using new technologies such as commercial cloud solutions.
7. Beyond cyber threats, we must guard against risks that disrupt access to digital infrastructure and services, including physical hazards like fires, and less visible risks like hardware failure and system misconfiguration.
8. These are risks as a result of our dependence on digital infrastructure and services. We cannot eliminate risk completely, so we must enhance our preparedness by reducing the occurrence and the impact of disruptions.
9. We are working towards introducing a new law this year, called the Digital Infrastructure Act. This will improve Singapore’s digital resilience and security. The Act targets foundational digital infrastructure, starting with major cloud service providers and data centres.
a. The Act will require major operators to implement measures to uphold their resilience and security, and to minimise disruptions.
b. We are studying requirements for major operators to report disruptions to the Government, so that we can better learn and improve from these incidents, and support response and recovery efforts where needed.
c. We have been seeking feedback from digital infrastructure providers and some of their customers, since mid-2024.
10. The Infocomm Media Development Authority, IMDA, recently released Advisory Guidelines for cloud service providers and data centres. These guidelines contain key measures that we have been consulting stakeholders on.
a. The guidelines encourage data centre operators to have a robust business continuity system and ensure high availability for their enterprise customers.
b. Cloud service providers are also encouraged to manage data security risks, and ensure business continuity planning.
c. All operators are encouraged to implement the measures, and many providers including Microsoft, Equinix and Keppel, and their enterprise customers, have expressed support for the new Advisory Guidelines, which they find to be fit for purpose and aligned with international standards.
11. We are also strengthening the resilience of our Government systems to ensure that Singaporeans have trust and confidence when interacting with the Government online.
a. We have improved the resilience of central systems used by Agencies. Service availability for these systems rose from 95% to 99.5% in the last year. We will continue to increase the adoption of tools to improve the resilience of Government applications, including those that monitor system uptime.
b. As resilience measures incur costs, our approach must be calibrated. We will support Agencies providing important services to implement more sophisticated measures where appropriate.
12. There is a need for Government to manage access to information about individuals, as such information could be exploited in scam tactics.
a. We are committed to ensure that data, including personal data, is managed carefully and responsibly.
b. In the Government’s provision of the digital services involving data, Agencies must assess the right balance between the benefits and risks in each use case, to achieve the dual objectives of service accessibility and data protection, in line with the guidelines and safeguards that MDDI has provided.
Ensuring Future-Readiness of our Digital Infrastructure
13. Sir, our digital infrastructure must not only be secure and resilient, but also position Singapore for the future.
14. Last year, we announced that IMDA is investing up to $100 million to upgrade our Nationwide Broadband Network (NBN). This will enable broadband speeds up to 10 times faster than what most households have today.
a. Operators are starting to offer higher speed broadband services at lower prices. A 10 Gig plan now costs between $30 to $70, compared to more than $100 a year ago.
15. Developing our future-ready digital infrastructure also entails addressing resource constraints as we pursue growth. We must explore ways to support Singapore’s AI ambitions while keeping to our climate commitments, as well as balance digital infrastructure growth with environmental sustainability.
a. IMDA launched the Green Data Centre Roadmap last year to guide data centres to improve energy efficiency and use green energy to grow AI compute capacity sustainably. We have made good progress. For example, the BCA-IMDA Green Mark for data centres was refreshed last October to raise the bar for data centre sustainability. IMDA also launched the Energy Efficiency Grant for the data centre sector last December to support businesses’ upgrades to more energy efficient IT equipment.
b. MDDI is exploring further ways to uplift data centre sustainability through regulations. We are studying other jurisdictions and are in early engagement with industry to develop a framework for Singapore’s context.
Doing Digital Government Differently
16. Sir, we have to lead by example, as a Digital Government. We must continue to build the capabilities for the public sector to create and experiment with AI, and unlock citizen-centric solutions.
a. We have made available within the Public Service access to best-in-class AI and Large Language Model tools, LLM tools. Pair Chat is a fast and secure generative AI assistant used by more than half the Public Service today. Last year, we organised a whole-of-government prompt engineering competition. This attracted over 1,040 officers. The fact that I can say this already makes us quite unusual in terms of how we ‘do Digital Government’ – that we have a prompt engineering competition within Government and that there were 1,040 officers who participated. The finalists were tasked to build an event publicity website within 10 minutes using LLM tools. The winner of this competition was Muhammad Naim Bin Zahari, a firefighter with SCDF. At the time of the competition, he had just completed a 24-hour shift. In second place was Rachel Tiang, a finance officer at MOM. Neither were in technical roles dealing with AI. Both of them and all the competitors were more than capable of building this functioning publicity website within 10 minutes using these AI and LLM-augmented tools.
b. We actively involve non-technical public officers in creating digital products. Last year, GovTech held its inaugural series of hackathons for public officers, called the LAUNCH! Programme. It gathered more than 600 ideas and birthed 26 innovative prototypes. For example, a team of two primary school teachers and a GovTech officer prototyped an AI tool to provide students with immediate customised feedback on their oral skills performance.
c. We are also exploring how officers can innovate better and faster with AI. One of the prototypes from our recent Hack for Public Good hackathon was Spaceship, a tool to make prototyping less daunting for public officers. Spaceship enables officers to use AI agents to build and deploy fully functional prototype applications, including LLM-based tools. They do this using just plain English. This is a tool for non-technical public officers to get from an idea to a workable app in minutes using just plain English. I tried out this prototype, and I tried to have it code a portal that restricted the length of MPs’ speeches. It put the appropriate filter into the spreadsheet, but I think that is the limit of the technology today.
17. As we increase the use of AI in Government, it is critical to understand and mitigate the risks in AI applications. GovTech is building the capabilities to ensure that the Government’s Generative AI applications go-to-market safely.
a. We have Litmus, a tool for AI safety and security testing. We have curated a set of tests to ensure our AI applications are resistant to risks that mislead users or cause reputational harm. Litmus is built in partnership with IMDA’s Moonshot, and will be launched this year. Based on tests with Agencies, we have seen how Litmus can spot potential safety issues ahead of time, allowing us to act proactively. Essentially this is AI testing as a service.
b. Litmus provides a diagnosis of the AI risks, but we also need a solution once those risks are detected. In the AI world, guardrails ensure that AI systems operate within ethical, legal, and functional boundaries. We are building Sentinel, a platform that provides guardrails as a service for the Government’s AI applications. Product teams can choose from a curated list of guardrails, including those from top AI developers and localised ones like LionGuard, and easily integrate these into their applications. Sentinel has been able to accurately identify attempts to infiltrate systems or trick AI models into producing inappropriate output.
c. Litmus and Sentinel demonstrate how we want to develop Government Generative AI applications that are safe for use, including by members of the public.
Conclusion
18. Sir, our digital infrastructure underpins key functions that citizens and businesses rely on. We have therefore actively invested in enhancing the security, resilience and future-readiness of our key digital infrastructure. We also continue to build capabilities in the public sector, and embrace experimentation and innovation with AI, to better serve Singaporeans. I am hopeful that this will build trust in our digital future as we continue on our Smart Nation journey.
19. Thank you.