MDDI 연설문 · 2024-10-16

Janil Puthucheary 정무차관의 싱가포르 국제 사이버 주간 AI 고위급 토론회 기조 연설

Janil Puthucheary · MDDI 전 정무차관 · 싱가포르 국제 사이버 주간 AI 고위급 토론회

요점

  • 핵심 질문: 「AI를 안전하게 사용할 수 있는가?」 ChatGPT가 2022년에 등장한 이래——이 질문은 정부, 산업, 학계, 사용자, 도입에 모두 중요합니다.
  • 싱가포르의 국제적 발자국: 2023년 영국 AI 안전 정상회담 참여; 영국 NCSC, 미국 CISA와 함께 《Guidelines for Secure AI System Development》 공동 발표; 2024년 생성형 AI 거버넌스 프레임워크(9개 차원) 발표.
  • 「신뢰」는 Smart Nation 2.0의 핵심 원칙입니다. AI는 「전통적 사이버보안 위험」(오픈소스 구성요소 백도어, 모델 조작, 지원 소프트웨어에 대한 공격)뿐만 아니라 AI 고유의 위험(데이터 추출, 모델 조작)에도 직면해야 합니다.
  • CSA가 초판 《AI 보호 지침 및 보조 지침》을 발표했습니다——지침은 장기적으로 적용 가능한 핵심 원칙을 나열하고, 보조 지침은 커뮤니티 협력의 산물입니다(규정적이 아니며 「실무 참고」입니다).
  • CSA와 Resaro(싱가포르 AI 보장 회사)가 논문을 공동 발표했습니다——「AI 안전이 정확히 무엇인지」와 각 이해관계자의 역할을 탐구했습니다.
  • 7–9월 싱가포르가 「Global Challenge for Safe and Secure LLMs」을 개최합니다——300명 이상의 국제 참가자, 100개 이상의 팀——중국, 독일, 일본, 말레이시아, 싱가포르, 미국.

전체 번역

MDDI 영어 원문의 번역 · 번역일: 2026-05-03

디지털개발및뉴스부 고위정무부장 Janil Puthucheary 박사의 「싱가포르국제사이버주간」(SICW) AI 고위급 토론회 기조연설(2024년 10월 16일)

AI를 안전하게 사용할 수 있을까요?

각위 각하께서는,

귀빈 여러분,

여사 및 선생님:

안녕하세요.

1. 인공지능에 관한 이 「고위급 토론회」에 참석하게 되어 매우 기쁩니다.

AI 안전은 국제적 관심사입니다.

2. 「AI를 안전하게 사용할 수 있을까?」

a. 이는 우리 많은 사람이 계속 생각해온 질문입니다.——특히 2022년 ChatGPT가 대중의 시선에 들어선 이후로——정부, 산업, 학계의 업무에도 매우 중요하며——사용자인 우리에게도 중요하고——AI 채택에 대한 우리의 신뢰에도 중요합니다.

b. 우리가 주목하는 것은——AI가 「안전해질 수 있는가」, 「신뢰할 수 있게 될 수 있는가」, 그리고 「선한 힘이 될 수 있는가」입니다.

3. 지난 2년 동안——많은 파트너와 친구들이 이 주제에 관한 국제 토론회를 개최했습니다. 싱가포르는 그 중 적극적인 참여자——우리의 AI 거버넌스 기존 업무를 더욱 앞으로 나아가게 하고 있습니다.

a. 2023년——우리는 영국이 주최한 AI 안전 정상회담에 참여했습니다. 이는 국경을 넘는 AI 안전 및 보안 대화 중 중요한 이정표입니다.

b. 지난해 11월——싱가포르는 또한 영국 국가사이버보안센터(NCSC)와 미국 사이버보안및기반시설보안청(CISA)과 함께 『Guidelines for Secure AI System Development』에 공동 서명했습니다. 이 문서는 시스템 소유자가 「AI 의사결정 및 AI 안전 프레임워크」에서 사용해야 할 원칙을 제시했습니다.

c. 올해——AI 안전 측면에서——국제 협의 과정을 거친 후——싱가포르는 생성형 AI를 위한 최초의 『Model AI Governance Framework』를 출범시켰습니다. 이는 생성형 AI 거버넌스를 위한 최초의 포괄적 프레임워크입니다——9개의 차원을 포함하고 있습니다——이들 모델이 「전체적으로 고려되고 대응되도록」 보장하기 위해.

AI에 대한 신뢰는 채택을 촉진합니다.

4. 새로운 기술에 대응할 때——이것은 우리가 가져야 할 핵심 대화입니다. 클라우드 컴퓨팅, 인공지능, 양자 컴퓨팅 등의 기술——우리의 산업과 경제에 상당한 이익을 가져옵니다. 그러나 우리는 위험과 「그것들을 어떻게 관리할 것인가」에 대해 명확한 인식을 유지해야 합니다——「어려운 방식으로 배운 후」 뒷처리를 하고, 위기와 「일이 잘못되는」것을 통해 발견된 취약점을 패치하는 방식이 아니라.

5. 이것이 바로 우리가 「신뢰」를 핵심 원칙으로——싱가포르 「Smart Nation 2.0」계획의 핵심 일부로——삼는 이유입니다. 모든 사용자——대규모 조직과 개인——은 다음을 신뢰할 수 있어야 합니다: 기술(새로운 기술 포함)이 안전하고 신뢰할 수 있으며, 그들의 안전과 복지가 보호될 것입니다.

6. 이는 신뢰를 제공합니다——새로운 사용 사례를 시도하고 다음 성장 물결에서 새로운 기술을 배포하기 위해——그리고 우리 Smart Nation 2.0 계획의 더 큰 목표와 연결되기 위해——우리가 커뮤니티를 위해 무엇을 할 수 있는지, 우리의 사회와 기회에 어떤 종류의 성장을 가져올 수 있는지.

7. 따라서——이것은 단지 성장과 생산성에 관한 것만이 아닙니다——이 두 가지는 필요한 결과입니다——하지만 이것은 또한 「AI를 잘 구현하기」에 관한 것입니다. 우리는 알고 있습니다——의료 같은 특정 영역에서——더 높은 AI 안전 표준을 채택해야 합니다——중요한 위험에 대처하기 위해.

a. 우리는 AI 시스템을 악의적인 사이버 공격으로부터 보호해야 합니다. 우리는 알고 있습니다——위협 행위자가 오픈소스 AI 컴포넌트에 백도어를 삽입할 수 있고, 최종 모델이 조작되거나 방해받을 수 있으며, 위협 행위자가 AI의 기본 소프트웨어에 대해 고전적 공격을 발동할 수도 있습니다. 오래된 위험은 사라지지 않았습니다——그것들은 단지 「위에 겹겹이 쌓여」올 뿐입니다——그래서 이들 시스템은 모두 업데이트와 패치가 필요합니다.

b. 우리는 AI 모델을 보호해야 합니다——데이터 추출 시도를 방지하기 위해. 이 모든 것들은 「AI 솔루션에 대한 장기적 신뢰를 강화하기 위한」필요한 노력입니다.

8. 이것은 서비스 제공자, 산업 플레이어, 공공 부문 기술 파트너 간의 긴밀한 협력을 요구합니다——싱가포르의 경우 의료 기술 기구 Synapxe와 정부 기술청(GovTech) 같은.

9. AI는 또한 많은 산업에서 성장하고 있으며 전체 생태계를 넘어 성장하고 있습니다. 따라서——산업별 특정 위험 외에——우리는 체계적 위험도 직면하고 있습니다. 이들은 우리의 사고의 최전선으로 상승했습니다——이는 함께 해결해야 하는 국제적 과제입니다.

a. 일단 중요한 AI 기반시설의 핵심 부분이 방해를 받으면——많은 회사들이 모델, 도구 및 서비스에 대한 접근을 잃을 수 있습니다.

b. 사용자들도 그들의 활동을 계속하기가 어려울 것입니다——만약 그들이 AI 주위에 비즈니스 모델, 프로세스 모델을 구축했다면——그리고 AI 솔루션이 방해를 받는다면. 이들 서비스의 수리와 복구——일부 시간이 필요할 수 있습니다——이미 자리 잡은 보안 및 회복력 조치에 따라.

c. 이것이 발생할 때——많은 사람들에게 영향을 미칠 것입니다——그들이 어디에 살든, AI 모델이 어디에 배포되든 상관없이.

10. 이것이 바로 우리가——AI를 안전하게 하고 신뢰할 수 있게 하는 것을——반드시 최우선으로 삼아야 하는 이유입니다. 만약 우리가 계속 이 위험들에 대해 걱정한다면——누구도 AI를 채택하기 어려울 것입니다.

11. 이들은 AI 채택의 필요한 조건입니다——우리는 실질적인 단계를 취해야 합니다——「신뢰」의 토대를 마련하기 위해.

AI 안전에서의 우리의 진전

12. 「반쯤 빈 잔」을 그린 후, 우리는 실제로 상당한 진전을 보았습니다. AI는 전 세계적으로 점점 빠른 속도로 채택되고 있습니다. 이것이 「반쯤 찬 잔」입니다. 일부 국가에서는 AI가 중요한 기반 시설에서의 채택도 보고 있습니다.

13. 우리는 알고 있습니다. 이러한 채택이 많은 고전적인 사이버보안 위험을 증폭시킬 수 있으며, AI의 「기밀성, 무결성, 가용성」(C/I/A)에 영향을 미칠 수 있습니다. 그리고 AI 모델과 시스템에 고유한, 승인되지 않은 새로운 위험들이 있습니다.

14. 하지만 우리는 처음부터 시작하는 것이 아닙니다. AI 보안은 고전적인 사이버보안에 비해 아직 어리지만, 개발자들이 적절한 보호책을 마련하고 그들의 모델과 시스템을 보호하는 데 도움이 되는 많은 기존 노력들이 있습니다. 제가 강조한 많은 대화들은 이 과정의 일부입니다.

a. 예시가 계속됩니다. 미국 국가표준기술연구소(NIST)는 「AI 위험 관리 프레임워크」를 발표했으며, 사용자들이 잠재적 AI 위험을 관리하도록 돕습니다.

b. 한국 과학기술정보통신부는 그들의 계획을 발표했습니다. 「신뢰할 수 있는 AI 실현 전략」(Strategy to Realise Trustworthy AI)을 통해 AI를 더욱 안전하고 신뢰할 수 있게 하려는 계획입니다.

15. 어제 SICW 개막식에서 Teo Chee Hean 고위 장관은 싱가포르 사이버보안청(CSA)이 「AI 보안을 위한 지침 및 보조 지침」(Guidelines and Companion Guide for Securing AI)의 첫 판을 발표했다고 선언했습니다.

a. 이 지침들은 시스템 소유자가 사용해야 할, 중요하고 장기적으로 적용 가능한 원칙들을 제시합니다. AI 보안에 대한 그들의 접근 방식을 안내하며, 보안 통제와 모범 사례를 어떻게 적용할 것인지를 포함합니다.

b. 보조 지침은 「커뮤니티 노력」입니다. 시스템 소유자를 위한 실행 가능한 조치와 통제 항목을 제공합니다. 이것은 규정적이지 않으며, 시스템 소유자들이 「이 신생 영역을 헤쳐나가도록」 지원하는 자원입니다.

c. 저는 우리의 국제 파트너, 산업 관계자, 그리고 전문가들의 의견에 감사합니다. 우리는 초안에 대해 긍정적인 피드백과 개선 방법에 대한 제안을 받았습니다.

d. 우리는 피드백에 응하기 위해 노력했으며, 이 문서들을 「커뮤니티 주도의 자원」으로 발표했습니다. 우리는 계속 협력하기를 원하며, AI를 실무에서 더욱 안전하게 만들기를 희망합니다.

16. 저는 또한 CSA가 싱가포르 AI 신뢰 공간의 회사인 Resaro와 협력하여 「AI 안전 위험」에 관한 논문을 공동 작성한다는 것을 발표하게 되어 기쁩니다. 이 논문은 「AI의 안전이란 무엇인가」를 탐구하고, 다양한 이해관계자들이 이 영역에서 어떤 역할을 해야 하는지를 다룹니다. 지침, 보조 지침, 그리고 이 토론 논문은 모두 여러분의 좌석 위의 카드에 링크되어 있습니다. 논문과 보조 지침은 온라인에서 얻을 수 있습니다.

17. 우리는 또한 AI를 보호하는 새로운 기술을 발견하기 위해 현지 사이버보안 전문가 커뮤니티를 발전시키고 있습니다.

a. 예를 들어, 7월부터 9월까지 싱가포르는 「안전하고 신뢰할 수 있는 대형언어모델을 위한 글로벌 챌린지」(Global Challenge for Safe and Secure Large Language Models)를 개최했습니다. 자랑스럽게 말씀드리자면, 이 챌린지는 300명 이상의 국제 참가자들을 유치했으며, 이들은 견고한 보안 조치와 혁신적인 방법을 개발했습니다. LLM에 대한 탈옥(jailbreaking) 공격을 완화하고 LLM을 더욱 안전하게 하기 위함입니다.

b. 이 챌린지에는 100개 이상의 팀이 참여했으며, 중국, 독일, 일본, 말레이시아, 싱가포르, 미국 등지의 팀들을 포함합니다. 이는 AI 도전과제에 대응하는 글로벌 노력을 반영합니다.

c. 우리의 최고 팀들이 오늘 현장에 있습니다. 저와 함께 그들을 축하하고 감사해 주시기 바랍니다. AI를 더욱 안전하게 만들려는 그들의 노력을 위해서입니다.

d. 그 다음에는 패널 토론이 있을 것입니다. 토론 후 수상자들이 상을 받을 것입니다. 그들을 축하하고, 지지하고, 격려해 주시기 바랍니다. 그들의 탁월한 업무를 위해, 그리고 그들이 계속 진행하도록 격려하기 위해서입니다.

AI에 관한 「공공-민간 대화」 촉진

18. 오늘의 패널 토론은 정부 관계자와 산업 전문가, 연구자들이 개방적 대화를 나누는 중요한 기회입니다. AI를 더욱 안전하게 하는 방법을 함께 모색합니다. 저는 또한 패널 참가자들이 「우리가 우선적으로 중점을 두어야 할 핵심 조치」와 「지금까지 가장 효과적인 것」에 대해 의견을 나누기를 기대합니다.

19. 더욱 중요하게는, 저는 이 대화가 이해관계자들이 어떻게 계속 협력하고, 「정부 기관, 공급업체, 시스템 소유자, 산업 관계자, 사용자」 간의 관계를 개선해야 하는지를 논의하기를 기대합니다. AI의 개발, 배포, 그리고 사용을 수호하기 위함입니다.

a. 모든 사람이 「AI 신뢰 구축」에 이해관계를 가지고 있습니다. 우리는 한 배에 탄 것입니다. 우리는 현재 AI 개발, 배포, 그리고 채택의 핵심 시기에 있습니다. 우리는 산업과 사법 관할권을 초월하여 협력할 것입니다. 이 문제들에 조기에 대응합니다.

20. 오늘 저를 초대해 주셔서 감사합니다. 모두에게 알찬 회의와 즐거운 사이버 주간이 되기를 기원합니다.

영어 원문

MDDI 공식 웹사이트 원문 · 수집일: 2026-05-02

Keynote Address by SMS Janil Puthucheary at the Singapore International Cyber Week (SICW) High-Level Panel on AI on 16 Oct 2024

CAN AI BE SECURE?

Your excellencies,

Distinguished guests,

Ladies and gentlemen,

Good morning.

1. It is my pleasure to be here with you at this High-Level Panel on Artificial Intelligence.

AI Security is an International Concern

2. “Can AI be Secure?”

a. This is a question many of us have grappled with, more so since the explosion of ChatGPT into our consciousness in 2022, but it’s been relevant to our work in the government, industry, academia, and it is relevant to us as users, and relevant in our trust in the adoption of AI.

b. We are concerned with whether AI can be made safe, can be made secure, and be a force for good.

3. Many of our partners and friends have hosted international discussions on this topic in the past two years. Singapore has been an active participant in this space, building on our existing work in AI governance.

a. In 2023, we joined our counterparts at the AI Safety Summit, hosted by the UK. This was an important milestone in dialogues on AI safety and security, across borders.

b. In November of last year, Singapore was also invited to co-seal the “Guidelines for Secure AI System Development”, developed by the UK’s National Cyber Security Centre, or the NCSC, and the US’s Cybersecurity and Infrastructure Security Agency. This document outlines principles that system owners should use to guide their decision-making about AI, and their frameworks for AI safety.

c. This year, for AI safety, Singapore has launched a Model AI Governance Framework for Generative AI, following an international consultation process. This is the first comprehensive framework for the governance of Generative AI. It has nine dimensions to ensure that these models are seen and addressed in totality.

Trust in AI will Enable Adoption

4. In addressing emerging technologies, these are the sorts of critical conversations we need to have. Technologies like cloud computing, Artificial Intelligence, and quantum computing promise significant benefits to our industries and economies. However, we must be clear-eyed about the risks, and how we will manage them, rather than learn the lessons the hard way, subsequently try to play catch up, and patch the vulnerabilities that we discover through crisis and something going wrong.

5. This is why we have made trust a core principle, a core part of Singapore’s plan for Smart Nation 2.0. All users – large organisations and individuals – must be able to trust that technology, including emerging technology, will be secure and reliable, that their safety and well-being are assured.

6. This provides the confidence to try new use cases and deploy new technologies in the next bound of growth, and this feeds into some of our larger aims in developing this Smart Nation 2.0 plan—what we can do for our communities, and what we can do to grow our society and our opportunities.

7. So, this is not just about growth and productivity—those are necessary outcomes, but this is also about implementing AI well. We know that we must adopt a higher standard for safety and security of AI in certain domains, such as healthcare, to address key risks.

a. We must protect our AI systems against malicious cyberattacks. We know threat actors can insert backdoors into open-source AI components, final models can be manipulated or disrupted. Threat actors could also mount classical attacks on the software supporting AI. The old risks haven’t gone away. They’ve just been added to, so these systems all need to be updated. They need to be patched.

b. We must protect AI models against attempts to extract data. And all these are necessary efforts to strengthen long-term trust in AI-based solutions.

8. This requires close partnership between service providers, industry players, and public sector technology partners, such as what we have in Singapore, Synapxe, our Healthcare Technology Agency and the Government Technology Agency of Singapore.

9. AI has also grown in many sectors, and across our entire ecosystem. Therefore, there are not just the sector-specific risks, we also face systemic risks. These have come to the fore in our thinking, and this is really an international challenge that we have to tackle together.

a. If there are disruptions to key parts of our critical AI infrastructure, many companies can lose access to their models, tools, and services.

b. And users will find it difficult to continue with their activities, if they build their business model, process model around AI and the AI solutions have been corrupted. Efforts to repair and restore these services could take some time, depending on the security and resilience measures that are in place.

c. And as this happens, it affects many people, regardless of where they reside and where the AI models have been deployed.

10. This is why it must be a priority for us to make AI secure, and trustworthy. If we had to worry constantly about such risks, it would be difficult for any of us to adopt AI.

11. These are the necessary conditions for AI adoption, and we need to take practical steps to provide a base of trust.

Our Progress in AI Security

12. Having painted the “glass half-empty” picture, actually we are seeing quite a bit of progress. There is a lot of AI adoption across the globe at an increasing pace. This is now the “glass half-full”. In some countries, we are seeing AI adoption in critical infrastructure.

13. Now we know that this adoption increases many classical cybersecurity risks. This can affect the confidentiality, integrity, and availability of AI. There are new risks unique to AI models and systems which are not authorised.

14. But we are not starting from zero. AI security is relatively nascent compared to the classical cybersecurity, but there are many existing efforts to help developers put the right guardrails in place, and to secure their models, secure their systems, and the many conversations that I’ve highlighted are part of this process.

a. The examples continue: the US National Institute of Standards and Technology has released an AI Risk Management Framework. This will help users to manage potential AI risks.

b. The Ministry of Science and Technology in South Korea has also announced its plans to make AI more safe, secure, and trustworthy, in its “Strategy to Realise Trustworthy AI”.

15. Yesterday, at the SICW Opening Ceremony, Senior Minister Teo Chee Hean announced that the Cybersecurity Agency of Singapore is publishing the first edition of our Guidelines and Companion Guide for Securing AI.

a. These guidelines set out key, evergreen principles that system owners should use to guide their approach to security of AI, including how they implement security controls and best practices.

b. The companion guide is a community effort to provide system owners with practical measures, and controls. This is not meant to be prescriptive, but is a resource to support system owners to navigate this nascent space.

c. I would like to thank our international partners, industry players, and professionals for their comments. We received positive feedback on our initial draft, along with suggestions on how to improve it.

d. We have taken effort to address the feedback, and have put the documents out as a community-led resource. We hope to continue working together to make AI more secure in practice.

16. I am also pleased to announce that CSA has worked with Resaro, a Singaporean company in the AI assurance space, to co-author a paper on AI security risks. This paper explores what security of AI means, and discusses the role that all stakeholders should play in this space. The Guidelines, the Companion Guide, and this discussion paper are all linked on the card that you may have seen on your seats. The paper and the companion guide are available online.

17. We are also developing our local community of cybersecurity professionals, to discover new techniques for securing AI.

a. For example, from July to September, Singapore hosted a Global Challenge for Safe and Secure Large Language Models, or LLMs. I am proud to share that this challenge saw more than 300 international participants to developing robust security measures and innovative approaches to mitigate jailbreaking attacks on LLMs, and to make LLMs more secure.

b. We had more than 100 teams in this challenge, including groups from China, Germany, Japan, Malaysia, Singapore, and the United States. This is a reflection of the global effort to tackle the challenges of AI.

c. Our top teams are in the audience with us today. Please join me in congratulating them and thanking them for their effort to make AI more secure.

d. We will have the panel discussion after this and after the panel discussion, the winners will receive their prizes. Please stay on and congratulate them, support them and encourage them for the great work that they have done, which we will encourage them to keep on doing.

Facilitating a Public-Private Conversation on AI

18. The panel today is an important opportunity for us as government officials to have an open dialogue with industry professionals, together with researchers, and explore how AI can be made more secure. I look forward to our panellists’ comments on the key measures we should prioritise, and what has been most effective so far.

19. More importantly, I look forward to how the dialogue can discuss how stakeholders should continue to work together and improve their relationships across government agencies, vendors, system owners, industry players, and users, to safeguard the development, deployment and the use of AI.

a. Everyone has a stake in building trust in AI. We are in this together and we are at a critical period for the development, deployment, and adoption of AI. We will work together to address these issues early – across sectors, and across jurisdictions.

20. Thank you for inviting me to be with you today. I wish you all a fruitful session, and a wonderful Cyber Week.