MDDI 연설문 · 2026-02-20

Yang Liming 부장관의 「글로벌 수준의 AI 안전: 디지털 부장관 및 관계자 견해」 전문 토론 발언

Josephine Teo · 디지털 발전 및 뉴스 부장관 · 글로벌 수준의 AI 안전: 디지털 부장관 및 관계자 견해 전문 토론

요점

  • Josephine은 「항공 허브」로 비유합니다: 싱가포르는 비행기를 만들지 않습니다(Boeing/Airbus를 소유하지 않음), 하지만 여전히 제조, 유지보수, 항공 관제 등에 투자해야 합니다. AI도 마찬가지입니다—이 지역에서의 광범위한 채택을 원한다면, 동등한 수준으로 위험 완화에 투자해야 합니다.
  • AI 규제는 「목표 정확」이어야 합니다: 너무 광범위하면 혁신을 지체시키고, 너무 느슨하면 시민에게 「거짓 약속」을 줍니다. 싱가포르는 지난해 입법하여 플랫폼이 통보받은 후 AI가 생성한 해로운 이미지 콘텐츠를 삭제해야 한다고 요구했습니다.
  • AI와 보안의 3가지 관계: ①AI를 위협으로서(시스템을 공격하는 데 사용됨); ②AI를 공격 대상으로서(다중 지능형 시스템이 제어 불능 상태에 빠질 위험이 특히 큼); ③이러한 위협에 대항하는 도구로서의 AI—마지막 것이 가장 국제 협력이 필요합니다.
  • IKEA로 AI 도구의 신뢰성을 비유합니다: 사용자는 스스로 검증할 수 없으므로, 「테스트 + 표준」의 신뢰할 수 있는 체계가 필요하며, 이는 제조업체가 「판매 전에」 책임을 다하게 합니다.
  • 「디지털 주권」에 대한 생각: AI를 자신의 국경 내에 묶는 것은 실현 불가능하며 거짓 안전감입니다; 진정한 주권은 Bengio가 말한 「모든 국가가 테이블 앞에 앉을 수 있고, 메뉴에 나타나지 않는」입니다.

전체 번역

MDDI 영어 원문의 번역 · 번역일: 2026-05-02

진행자 Lee Tiedrich(2026년 《국제 AI 안전 보고서》 선임 자문역): Teo 장관님, 싱가포르는 항상 AI 거버넌스의 최전선에 있었습니다. 《동맹 AI 거버넌스 가이드》(ASEAN AI Governance Guide)부터 《싱가포르 AI 안전 합의》(Singapore Consensus on AI Safety)까지 말입니다. Yoshua(Bengio)가 방금 언급했듯이, 이 보고서는 이러한 평가를 다양한 문화와 규범에 「번역」하고 실제로 실행할 수 있어야 한다고 강조합니다. 싱가포르의 경험을 바탕으로, 과학을 도구와 실천으로 전환하여 전 세계의 모든 사람들이 사용할 수 있도록 하는 것이 어떻게 보입니까?

Josephine Teo 장관: 아마도 저는 작은 나라의 관점에서 공유할 수 있을 것 같습니다. 우리 지역은 AI 기술의 채택에 매우 관심이 있지만, 위험 범위에 대한 인식은 여전히 심화되고 있는 중일 수 있습니다.

여러 나라의 장관들과 소통할 때, 저는 자주 한 가지 관점을 공유합니다. 그들은 모두 싱가포르를 방문한 적이 있고, 우리의 항공 허브를 이용한 적이 있습니다. 저는 그들에게 설명합니다: 싱가포르는 항공기 제조 기술을 소유하지 않습니다. Boeing도, Airbus도 우리 것이 아닙니다. 하지만 우리는 반드시 이 항공기들이 어떻게 안전하게 제조되는지 관심을 가져야 하고, 유지보수와 정비, 대수리에도 관심을 가져야 하고, 공중교통 관리에도 관심을 가져야 합니다. 이 모든 부분이 제대로 이루어지지 않으면, 번성한 항공 허브를 유지하고 매일 공항을 이용하는 수백만 명의 사람들의 생명에 책임을 질 수 없습니다.

이것이 우리가 AI 안전에 대한 대화와 노력에 깊이 있게 참여해야 한다고 생각하는 이유입니다. 만약 우리가 이 지역에서 광범위한 채택을 보고 싶다면, 위험을 완화하는 방법을 동등하게 이해해야 합니다. 이것이 시작점입니다.

제가 말씀드리고 싶은 두 번째 점은 이것입니다. 정책 입안자로서, 우리는 안전 측면의 노력이 최종적으로 실행 가능한 가드레일로 전환되어야 한다고 이해합니다. 이것은 종종 표준 수립을 의미하고, 규제와 법적 조치를 의미합니다.

하지만 우리는 신중한 방식으로 이를 해야 합니다. 왜냐하면 우리는 여전히 이 기술로부터 이득을 원하기 때문입니다. 만약 우리가 이 요구사항들을 이행할 때 충분히 정확하지 않다면, 결과는 단순히 혁신의 속도에 영향을 주는 것뿐만이 아닐 수 있습니다.

우리는 최종적으로 시민들에게 「허위 약속」을 할 수 있습니다. 그들에게 「이미 보호받았다」는 인상을 주면서, 사실상 그렇지 않습니다.

따라서 저는 우리가 신중함이 필요하다고 생각합니다. 싱가포르의 우려 중 하나는 또한 이것을 포함합니다. 일단 해야 할 일이 명확해지면, 우리는 매우 빠르게 추진할 수 있기를 바랍니다.

Yoshua는 AI의 오용에 대해 언급했습니다. 예를 들어, 여성과 아동을 겨냥한 이미지를 생성하기 위해 사용되는 경우입니다. 우리는 작년에 이러한 이미지를 대량의 사람들에게 배포하는 서비스 제공자에게 법적 의무를 부과하는 새로운 법을 제정했습니다. 그들은 항상 「콘텐츠 생성은 우리의 책임이 아니다」라고 말해왔습니다. 이 점에 우리는 동의합니다. 하지만 일단 그러한 해로운 콘텐츠의 존재에 대해 통보받으면, 당신은 제거할 의무가 있습니다. 우리가 제정한 이 새로운 법은 정확히 이러한 의무를 설정하기 위한 것입니다.

Yoshua는 또한 보고서의 발견사항에 대해 언급했습니다. AI와 사이버보안이 매우 우려되는 방식으로 교차하고 있습니다. 예를 들어, AI가 시스템 공격에 사용되므로 AI는 하나의 위협입니다. 하지만 동시에, 우리는 또한 AI 자체가 사이버 공격의 목표가 될 수 있음을 봅니다. AI가 공격 대상이 될 때, 특히 다중 에이전트 시스템의 경우, 이러한 종류의 위험은 매우 쉽게 통제 불가능해질 수 있습니다.

따라서, 비록 싱가포르 정부가 AI를 시험 중일지라도, 우리는 이러한 AI 에이전트 시스템의 아키텍처에 대해 매우 신중하기를 바랍니다. 구체적으로는 「에이전트에 얼마나 많은 자율성을 부여할 것인가」라는 결정에 무엇이 반영되었는지에 대해 신중해야 합니다. 그것 주변에 가드레일을 설정할 수 있는 방법이 있습니까?

따라서 저는 이렇게 말씀드립니다: AI를 위협으로서, AI를 목표로서, 그리고——정말로 더욱 깊은 협력이 필요하고 더 잘해야 하는——AI를 이러한 위협에 대항하는 도구로서. 이들은 모두 우리가 ASEAN 차원에서 진전을 이루길 희망하는 것들입니다.

진행자: 정책 입안자들이 이 정보를 활용하는 것 외에도——저는 제 업무 과정에서 많은 조직, 비영리 단체, 중소기업과 접촉합니다. 제가 자주 듣는 것은: 「좋다, 과학에서 시작해야 하고, 그것이 제로 단계다.」하지만 이러한 다른 조직들에게는, 그들이 필요로 하는 것은 도구입니다——그들은 이를 실제로 옮길 전체 연구팀을 갖고 있지 않습니다. Teo 부장관, 정부 관점에서 우리가 도구화를 추진하고, 기업과 기관이 이러한 좋은 연구를 실제로 배포하기 더 쉽게 할 수 있는 어떤 방법이 있을까요?

부장관: 저는 최근에 유사한 상황에서도 이 주제를 논의했습니다. 저는 IKEA를 사용하여 비유했습니다——당신이 IKEA에 가서 가구를 구매하면, IKEA는 이 가구가 테스트되었다고 약속합니다. 만약 소파라면, 사람들이 「뛰어넘어」25,000번을 해도 깨지지 않을 수 있으므로, 당신은 당신의 자녀가 뛰어올라도 다치지 않을 것을 알게 됩니다——글쎄, 적어도 25,000번 이내에는 그렇습니다.

만약 당신이 기술을 받는 쪽의 사용자의 입장에서 생각해 본다면——그가 자신이 안전 조건을 적용할 것으로 기대하는 것은 매우 불합리합니다. 그는 이런 능력이 전혀 없으며, 「무엇을 그에게 팔 수 있는지, 무엇을 팔 수 없는지」를 결정할 권한도 없습니다.

따라서 정책 입안자로서 우리는 다음을 인식해야 합니다: AI 도구와 기술 채택을 권장하는 집단들 사이에 엄청난 능력 격차가 존재합니다. 우리는 명확하게 생각해야 합니다——어느 지점에서 필수적인 요구사항을 설정할지, 어느 상황에서 업계를 함께 모을지 — 이것이 엄격한 규제를 강요하는 것보다 더 유용할 수 있습니다. 예를 들어 Davos에서 우리는 보험 메커니즘, AI 모델 개발자에게 올바른 인센티브를 창출할 가능성에 대해 논의했습니다. 이것이 「쉽게 구현될」수 있는 방법은 아직 없지만, 만약 우리가 이성적인 방식으로 이러한 대화를 진전시킬 수 없다면, 위험 관리 측면에서 우리는 더욱 뒤떨어질 것입니다. 따라서 저는 이렇게 말씀드립니다——이러한 신중함은 많은 다른 수준에 적용되어야 합니다.

AI 안보 측면의 연구도 지속되어야 합니다. 따라서 저는 매우 기쁩니다. 우리는 싱가포르에서 개최한 「AI 안전 국제 과학 교류」제2차를 통해 이 대화를 계속하고 있습니다. 우리는 명확히 하고자 합니다——안전 연구 측면에서 어느 방향을 우선적으로 주목해야 하는지. 저는 올해 「다중 에이전트 시스템」이 두드러질 것이라고 믿습니다.

하지만 여기서 멈출 수 없습니다. 우리는 계속 진행 중인 프로젝트가 있습니다. 우리는 처음부터 《국가 AI 연구개발 계획》 아래에서 약속을 했습니다. 기초 연구 수준에서, 「책임 있는 AI」(responsible AI)는 우리가 매우 관심 있는 영역입니다——이 두 가지는 반드시 동시에 진행되어야 합니다. 하지만 우리가 먼저 일부 테스트 프레임워크와 툴킷을 가질 수 없을까요? 우리는 「모두 준비될 때까지 기다렸다가 하자」는 것도 불가취하다고 생각합니다. 더 실용적인 방식은 이러한 테스트 도구의 부족함을 인정하고, 그런 다음 더 신중한 방식으로 이 시스템들의 위험을 보는 것을 추진하고, 어떻게 완화할 것인지를 연구하는 데 더 많은 노력을 투입하는 것입니다.

궁극적으로 우리는 다음과 같은 상태에 도달해야 합니다: 최종 사용자는 「안전 보증」을 가지고 있으며, 다시 「실행해야 할 테스트가 이미 실행되었는지」에 대해 생각하느라 수고할 필요가 없습니다. 우리는 그 지점까지 거리가 있지만, 우리는 로드맵을 명확하게 하기 위한 방법을 찾아야 합니다.

진행자: 제가 흥미로워하는 것은——또한 「과학을 실제로 가져오는 방법」「평가 생태계를 만드는 방법」의 주제를 반향합니다. 첫 번째 단계는 과학을 발전시키는 것입니다; 두 번째 단계는 「어떻게 평가할 것인가」를 명확히 하는 것입니다; 세 번째 단계는 「누가 평가할 것인가」입니다. 당신들은 평가 생태계의 형성을 어떻게 보십니까? 정부가 평가를 하는 것입니까? 아니면 회계 업계처럼 제3자 인증 감시인을 사용하는 것입니까? 저는 여러분의 의견을 듣고 싶으며, Teo 부장관에서 시작해주세요.

부장관: ASEAN 맥락에서, 저는 「먼저 눈앞의 그리고 임박한 위험을 해결하는」접근 방식을 주장할 것입니다.

만약 우리가 대중과 정책 입안자들이 오늘 가장 관심 있어하는 문제에 초점을 맞추지 않으면, 대화는 너무 이론화되어 보일 것입니다——우리는 관심과 추진력을 잃을 수 있으며, 협력의 기초가 진정으로 구축되지 않았을 것입니다.

AI와 현실이 교차하는 영역에는 무엇이 있습니까? AI는 다음과 같이 사용됩니다——또는 오용됩니다——콘텐츠를 통해 다른 사람에게 해를 끼치기 위해, 이것은 하나의 영역입니다.

제가 접촉한 거의 모든 정책 입안자들은 이것에 매우 화를 내고 있습니다: 그들은 선거민의 우려에 대응해야 합니다——AI를 사용하여 만들어진 유해한 이미지들. 이것은 우리 사회에 매우 모욕적입니다.

만약 우리가 실용적인 방식으로 이러한 영역을 처리할 수 없다면, 저는 동료들의 주의력이 이 문제들에서 떨어져 나갈까봐 우려합니다.

그렇다면 우리는 무엇을 할 수 있습니까? 우리는 진지하게 물어야 합니다: 워터마킹(watermarking)은 이 문제를 처리하는 올바른 방법입니까? AI로 생성된 콘텐츠를 표시하는 다른 방법이 있습니까? 이것이 우리가 진행해야 할 방향입니까?

또 다른 주목할 만한 방향은 네트워크 보안에서의 AI 응용입니다. 현재 「AI를 위협으로서」는 아직 충분히 대응되지 않았다고 생각하며, 「AI를 공격의 대상으로서」는 더욱 사람들의 시야에서 멉니다. 동료들이 관심을 갖는 분야를 중심으로 대화를 돌려놓으면, 그들의 주의를 확실히 끌어당길 수 있고 의미 있는 기회를 만들어 「이것은 당신이 테스트할 수 있는 방법입니다」「이것은 실현될 수 있는 도구입니다」라고 말할 수 있습니다.

이들은 완벽하지 않을 것이지만, 중요한 시작점입니다.

관객 질문: 우리는 「디지털 주권」(digital sovereignty)이라는 말을 여러 곳에서 듣고 있으며, 점점 더 많은 국가들이 다양한 방식으로 이를 선포하고 있습니다. 적어도 AI 보안 분야에서라도 그 영향을 어떻게 보시는지, 또 어떤 가장 긴급한 보안 우려가 이로 인해 가장 먼저 「창밖으로 던져질」 것인지 듣고 싶습니다.

부장관: 저는 Yoshua가 제시한 관점에 기뻐합니다. 제 입장에서는 매우 견고합니다. Yoshua는 이전에 이렇게 말했습니다: 「우리는 모든 국가가 『테이블 앞에 앉을 수』 있고 『메뉴에 나타나지 않는』 세상을 원합니다」.

이것이 바로 AI에 직면해도 주권을 지킬 수 있는 방식입니다. 모든 것을 자신의 국경 내에 묶어서 「주권 AI」를 얻으려고 합니다—이것이 거짓 안전감을 준다고 생각합니다.

첫째, 이것은 불가능합니다; 둘째, 많은 국가들에 있어서—최첨단 응용 프로그램의 대부분이 다른 곳에서 나옵니다—이것은 오히려 당신을 차단하고, 당신이 앞으로 나아갈 수 없게 하며, 당신을 더 뒤떨어지게 합니다.

그럼 「주권」은 어떻게 통합되나요? 그것은 진지하게 다루어져야 하는 주제여야 합니다. 그것은 마음대로 휘둘러질 수 있는 단어가 아닙니다.

영어 원문

MDDI 공식 웹사이트 원문 · 수집일: 2026-05-02

Moderator, Lee Tiedrich, Senior Advisor to the 2026 International AI Safety Report: For Minister Teo, Singapore has been at the forefront of AI governance from the ASEAN AI Governance Guide to the Singapore Consensus on AI Safety. One of the things that Yoshua (Bengio) highlighted that the report talks about is the need to translate some of the evaluation for different cultures and different norms, and also to be able to put it into practice. Based on Singapore's experience, what does it look like to take the science and actually put that into tools and practice that people around the world can use?

Minister Josephine Teo: Perhaps I will offer a perspective as a small state in a part of the world that has a lot of interest in the adoption of AI technologies but perhaps is still only becoming much more aware of the extent of the risks.

In my interactions with my counterparts, I often share with them a perspective – They would have visited Singapore; they would have travelled in and out of our air hub. And I explained to them that Singapore does not own aircraft technologies. Boeing does not belong to us, neither does Airbus. But we have to be concerned about the safety of how these aircraft are manufactured. We have to be concerned about maintenance, repair, and overhaul. We have to be concerned about air traffic management. If we didn't have all these elements in place, it's very hard to see how you can have a thriving air hub and be responsible for the lives of millions of people passing through the airport.

So that's the reason why we think we have to be invested in the conversations and the efforts to bring about AI safety. If we want to see wide adoption in our region, then we must equally be aware of how the risks can be mitigated. So that's the starting point.

The second point I'd like to make is that ultimately, as policymakers, our objective in understanding the safety aspects must translate into how we can put them into operable guardrails. And very often, this would mean standards that are being imposed. This would mean regulations and laws.

But we have to do it in a thoughtful way, because we still do want to benefit from this technology. So if we are not targeted in the way we implement these requirements, then what we might achieve is not just an impact to the pace of innovation.

What we could end up with is a situation where we have given a false promise to our citizens, giving them the impression that we have protected them when in fact we haven't actually done so.

That's why I think we need to be thoughtful. Part of Singapore's interest is also that when there is clarity about what needs to be done, we want to be able to move very quickly.

Yoshua has talked about the misuse of AI, for example, to use it for generating images that often target women and children. What we did was that last year we introduced a new law. It imposes statutory obligations on the services that bring these images and make this content available to vast numbers of people. They've always said that we are not responsible for the generation of such content. And so that's something that we take on board. But having been notified of the existence of such harmful content, then there is an obligation for you to remove it. So this new law that we passed imposes such an obligation.

Yoshua also talked about the findings in the reports – how AI and cybersecurity are intersecting in very, very concerning ways. For example, AI being used to target systems, and so AI is a threat. Now, however, we also see that AI itself can be a target of cyber-attacks. And when AI becomes a target of cyber-attacks, particularly for multi-agent systems, those kinds of risks can easily go out of control.

So even as the Singapore Government is experimenting with the use of AI, we want to be very thoughtful about how these AI agent systems are being architected and what exactly goes into the decision-making process regarding the agency that is being granted. Is there a way to put guardrails around it?

So I would just say that AI as a threat, AI as a target, and where we really need to cooperate and do much better is in using AI as a tool to fight these threats. Those are the kinds of things that within the ASEAN community we hope to be able to make progress on.

Moderator: In addition to the policymakers being able to use this information -- through my work, I end up talking to a lot of organisations, nonprofits, small-and medium-sized businesses. What I hear a lot is, it's great -- you have to start with the science, and that is ground zero. But then for some of those other organisations, they need the tooling. They're not going to have a whole scientific staff to figure out how to put that into practice? And I'm just wondering, from the government's perspective, Minister Teo, what are your thoughts on how we might be able to advance some of the tooling to take this great learning and make it easier for companies and other organisations to actually deploy?

Minister: I was at a similar session recently, and this topic came up. The way I think about it is that I use IKEA as an example. You know, when you go to IKEA, you buy furniture, and IKEA promises you that this furniture has been tested. So, if it's a couch, it has been jumped on, perhaps 25,000 times, and it didn't break, you know that your kids are not going to be hurt if they jump on it too – well up to 25,000 times.

If you think about a user on the receiving end of this technology, it is quite unreasonable to expect them to have to impose safety conditions on their own. They're simply not in a position to do so, and they don't have the power to decide what gets sold to them and what does not.

So, we as policymakers must recognise that there is a huge gap between those that we are encouraging to adopt AI tools and technology in various contexts. We must think about where the right points are to make these requirements mandatory, and where it might be more useful for industries to come together, rather than imposing strict mandatory requirements. For example, in Davos, we discussed the possibility of insurance schemes and creating the right incentives for AI model developers. And I think that there is no easy landing point just yet, but if we fail to engage in these conversations in a rational way, then I think we are even further behind in trying to manage the risks. So I would say that the thoughtfulness has to be applied at many different levels.

There needs to be continued research in AI safety. And so I'm very happy that we are continuing to have this conversation through the second edition of the International Scientific Exchange for AI Safety in Singapore. We hope to update which areas of safety research that should be prioritised. I think this year, I certainly agree that multi-agent systems are going to come up quite prominently.

But we cannot just stop there. We also have an ongoing program. We started by setting aside commitments under our own National AI R&D Plan. In fundamental research, one of the areas that we are very interested in is responsible AI, so you need the two to go hand in hand. But can we not have some testing frameworks and toolkits to begin with? We think that that is also not helpful. It is more pragmatic to try to recognise the shortcomings of those testing tools, and then to invest further effort in promoting more thoughtful ways of looking at the risk of these systems and how to mitigate against them.

Ultimately, we should try to get to a point where the end user has assurance of safety so that they don't have to be thinking so hard about whether the proper tests have been applied. We're not there yet, but I think we need to find a way to work out the roadmap.

Moderator: I'm interested, and I think it touches on some of the themes of “how do we take the science and bring it to practice?”, “how do we actually create this evaluation ecosystem?” So step one is developing the science. Step 2 is then figuring out, “how do we actually evaluate this?” And then there's “by whom?” How do you see an evaluation ecosystem emerging? Do you see governments being the evaluator? Do you see this going more like we have with accounting, where you have third-party certified auditors of doing the evaluations? I'd be interested in each of your thoughts. Maybe start with Minister Teo.

Minister: Well, certainly in the ASEAN context, I would advocate for an approach that addresses near and present dangers that everyone is dealing with.

The risk of not focusing on what's most prominent in people's minds today, and policymakers' minds today, is that the conversation may feel too theoretical, and we may lose interest and momentum, and we won’t even build the foundations of cooperation in a meaningful way.

What are some of those areas where AI intersects? AI being used, or misused, for harming people in terms of content creation. I think that's one area.

Almost every single policymaker that I come across is very, very upset by the fact that they have to address their constituents' concerns about all these harmful images that are being created with the use of, or with the help of AI. It's very offensive to our societies.

And if we are not able to work on these areas in a meaningful way, in a practical way, then I think we risk losing my colleagues' attention.

So what can we do? We have to then seriously ask: Is watermarking the correct approach to dealing with it? Is there some other way of labelling AI-generated content? Is that even the right direction that we should be moving in?

The other area that I think it will be very prominent, and that is the use of AI in cybersecurity. I don't think at this point in time AI as a threat is adequately addressed. AI as a target is even further from people's minds. A pickup of the conversation in the areas that my colleagues care about, I think, stands a better chance of anchoring their attention and creating meaningful opportunities for us to say, “Here are the ways you can test for it”, and “Here are the tools that can be applied”.

They won't be perfect, but they are an important start.

Audience Member: Now we hear a lot about the rise of digital sovereignty like everywhere, and like a lot of more countries are trying to claim it in some ways or another. And I would be really curious to hear like how, at least in the AI safety field, how are you perceiving that impact and which are the safety concerns that are most pressing that get thrown out of the window based on that first?

Minister: Yeah, I'm so glad that Yoshua has offered a view that to me is a very sound approach. You (Yoshua) said earlier that what we want is a world where every country can be at the table, not on the menu.

That's exactly how you can preserve sovereignty, even with AI developments. The idea that you get sovereign AI by confining everything to your own shores, I think it gives a false sense of security.

Firstly, it's not achievable. Secondly, the idea that you can do so would, I think, mean that for many countries, where the most sophisticated applications will have to originate from elsewhere, it just cuts you off from being able to make progress, and that puts you even further behind.

So how does sovereignty fit in? It has to be a topic that is dealt with thoughtfully. It's not a term to be bandied about too easily.