โŒ

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

Warning: โ€œFancyโ€ QR Codes Are Making Quishing More Dangerous

23 January 2026 at 14:00

Scammers are increasingly using visually stylized QR codes to deliver phishing links, Help Net Security reports.

QR code phishing (quishing) is already more difficult to detect, since these codes deliver links without a visible URL. Attackers are now using QR codes with colors, shapes, and logos woven into the codeโ€™s pattern.

New Phishing Campaign Spreads Via LinkedIn Comments

22 January 2026 at 16:00

A widespread phishing campaign is targeting LinkedIn users by posting comments on usersโ€™ posts, BleepingComputer reports.

Threat actors are using bots to post the comments, which impersonate LinkedIn itself and inform the user that their account has been restricted due to policy violations. The comments contain links to supposedly allow the user to appeal the restriction.

AI Literacy Training:ย From Best Practice to Legal Requirement Under the New EU AI Act

By: John Just
22 January 2026 at 11:00

For those of you who are like me, when I first heard about the new EU AI Act, I had flashbacks to the implementation of the General Data Protection Act (GDPR) back in 2018. There are certainly a lot of similarities with the EU leading the way in consumer protections that will likely lead to more, similar legislation across the globe.

The Zero Risk Trap: How to Ditch Perfection and Prioritize Real Cyber Resilience

20 January 2026 at 14:10

In Star Trek, the Kobayashi Maru simulation is an unwinnable test faced by Starfleet cadet captains. The only way to โ€œwinโ€ is to accept that you canโ€™t. Itโ€™s a test of character โ€”ย forcing cadet captains to choose between impossible options and live with the consequences. In many ways, our roles as cybersecurity leaders is the..

The post The Zero Risk Trap: How to Ditch Perfection and Prioritize Real Cyber Resilience appeared first on Security Boulevard.

์นผ๋Ÿผ | ๊ธฐ์ˆ ์—…๊ณ„ ๊ฐ์› 24๋งŒ ๋ช… ์‹œ๋Œ€, ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋Š” ์ปค์ง„๋‹ค

19 January 2026 at 02:12

๊ฒฝ์ œ์  ์••๋ฐ•๊ณผ AI์˜ ์ผ์ž๋ฆฌ ๋Œ€์ฒด, ๊ทธ๋ฆฌ๊ณ  ๋Š์ž„์—†๋Š” ์กฐ์ง ๊ฐœํŽธ์ด ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋ฅผ ์ตœ๊ทผ ์ˆ˜๋…„ ์ค‘ ์ตœ๊ณ  ์ˆ˜์ค€์œผ๋กœ ๋Œ์–ด์˜ฌ๋ฆฌ๊ณ  ์žˆ๋‹ค. ๊ณ ์šฉ ๋ถˆ์•ˆ์ •์„ฑ์€ ์ง์›์˜ ์ถฉ์„ฑ๋„๋ฅผ ์•ฝํ™”์‹œํ‚ค๊ณ  ๋ถˆ๋งŒ์„ ํ‚ค์šด๋‹ค. ์—ฌ๊ธฐ์— AI ์—์ด์ „ํŠธ์™€ ๊ฐ™์€ ๊ฐ•๋ ฅํ•œ ๋„๊ตฌ๊ฐ€ ๋น ๋ฅด๊ฒŒ ๋„์ž…๋˜๋ฉด์„œ, ์‚ฌ๋žŒ๊ณผ ๊ธฐ๊ณ„ ๋ชจ๋‘๋ฅผ ํ†ตํ•œ ๋‚ด๋ถ€ ์œ„ํ˜‘์ด ๋”์šฑ ์ฆํญ๋˜๊ณ  ์žˆ๋‹ค.

๋ž˜์…”๋„FX(RationalFX)์™€ ์—ฌ๋Ÿฌ ๊ณ ์šฉ ์ถ”์  ๊ธฐ๊ด€์— ๋”ฐ๋ฅด๋ฉด 2025๋…„ ์ „ ์„ธ๊ณ„ ์ˆ˜๋ฐฑ ๊ฐœ ๊ธฐ์ˆ  ๊ธฐ์—…์—์„œ ์•ฝ 24๋งŒ 5,000๊ฑด์˜ ์ •๋ฆฌ ํ•ด๊ณ ๊ฐ€ ๋ฐœํ‘œ๋๋‹ค. ์ด ์ˆ˜์น˜๋Š” ๊ธฐ์ˆ  ์‚ฐ์—…์— ์ง‘์ค‘๋ผ ์žˆ์ง€๋งŒ, ์ œ์กฐยท์œ ํ†ตยท๊ธˆ์œตยท์—๋„ˆ์ง€ยท๊ณต๊ณต ๋ถ€๋ฌธ ๋“ฑ ๋‹ค๋ฅธ ์‚ฐ์—… ์ „๋ฐ˜์—์„œ๋„ ์œ ์‚ฌํ•œ ์ถ”์„ธ๊ฐ€ ๋ณธ๊ฒฉํ™”๋˜๊ณ  ์žˆ๋‹ค. ์ฑŒ๋ฆฐ์ € ๊ทธ๋ ˆ์ด ์•ค ํฌ๋ฆฌ์Šค๋งˆ์Šค(Challenger, Grey & Christmas) ์ง‘๊ณ„์— ๋”ฐ๋ฅด๋ฉด ๋ฏธ๊ตญ์—์„œ๋Š” 2025๋…„ 11์›”๊นŒ์ง€ ์ด 117๋งŒ ๊ฑด์ด ๋„˜๋Š” ๊ฐ์›์ด ๋ฐœํ‘œ๋๋‹ค.

์ด๋Ÿฐ ์ •๋ฆฌ ํ•ด๊ณ ๋Š” ๋ถˆ๋งŒ์ด ๋ˆ„์ ๋˜๊ธฐ ์‰ฌ์šด ํ™˜๊ฒฝ์„ ๋งŒ๋“ ๋‹ค. ์žฌ์ •์  ์ŠคํŠธ๋ ˆ์Šค์™€ ์ž๋™ํ™”์— ๋Œ€ํ•œ ๋ฐ˜๊ฐ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ, ๊ด€๋ฆฌ ์†Œํ™€์ด๋‚˜ ๋ถ€์ฃผ์˜ํ•œ ๋ฐ์ดํ„ฐ ์ฒ˜๋ฆฌ๋ถ€ํ„ฐ ๋ฐ์ดํ„ฐ ์œ ์ถœ, ์ž๊ฒฉ ์ฆ๋ช… ํŒ๋งค์™€ ๊ฐ™์€ ๊ณ ์˜์ ์ธ ์นจํ•ด ํ–‰์œ„๊นŒ์ง€ ๋‚ณ์„ ์ˆ˜ ์žˆ๋‹ค.

์ด ํ๋ฆ„์€ ์‚ฐ์—…๊ณผ ์ง€์—ญ์„ ๋ง‰๋ก ํ•˜๊ณ  ์‹ฌ๊ฐํ•œ ์‚ฌ๊ณ ์˜ ์ฃผ์š” ์›์ธ์ด ๊ธฐ์—… ๋‚ด๋ถ€, ์ฆ‰ ์‹ ๋ขฐ๋ฐ›๋˜ ๋‚ด๋ถ€์ž์— ์žˆ์„ ์ˆ˜ ์žˆ๋‹ค๋Š” ์‚ฌ์‹ค์„ ๋ณด์—ฌ์ค€๋‹ค.

AI ์—์ด์ „ํŠธ๋ผ๋Š” ๊ธฐ๊ณ„ ๊ธฐ๋ฐ˜ ๋‚ด๋ถ€์ž ์œ„ํ˜‘

์ธ์  ์š”์†Œ์— ๋”ํ•ด AI ์—์ด์ „ํŠธ์˜ ๊ธ‰์†ํ•œ ํ™•์‚ฐ์€ ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋ฅผ ํ•œ์ธต ๋ณต์žกํ•˜๊ฒŒ ํ•˜๊ณ  ์žˆ๋‹ค. ํŒ”๋กœ์•Œํ†  ๋„คํŠธ์›์Šค๋Š” AI ์—์ด์ „ํŠธ๋ฅผ 2026๋…„ ๊ฐ€์žฅ ์‹ฌ๊ฐํ•˜๊ณ  ๋น ๋ฅด๊ฒŒ ์ง„ํ™”ํ•˜๋Š” ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ ๊ฐ€์šด๋ฐ ํ•˜๋‚˜๋กœ ์ง€๋ชฉํ–ˆ๋‹ค.

ํŠน๊ถŒ ์ˆ˜์ค€์˜ ์‹œ์Šคํ…œ ์ ‘๊ทผ ๊ถŒํ•œ์„ ๊ฐ–๊ณ , ์‚ฌ๋žŒ์„ ๋›ฐ์–ด๋„˜๋Š” ์‹คํ–‰ ์†๋„์™€ ๋Œ€๊ทœ๋ชจ ์˜์‚ฌ๊ฒฐ์ •์„ ์ˆ˜ํ–‰ํ•˜๋Š” ์ž์œจํ˜• ์—์ด์ „ํŠธ๋Š” ๋” ์ด์ƒ ๋‹จ์ˆœํ•œ ์ƒ์‚ฐ์„ฑ ํ–ฅ์ƒ ๋„๊ตฌ์— ๋จธ๋ฌผ์ง€ ์•Š๋Š”๋‹ค. ์ด๋“ค์€ ๋ฐ์ดํ„ฐ ์œ ์ถœ์ด๋‚˜ ์„œ๋น„์Šค ์ค‘๋‹จ, ๋‚˜์•„๊ฐ€ ์˜๋„ํ•˜์ง€ ์•Š์€ ๋Œ€ํ˜• ์‚ฌ๊ณ ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋Š” ๊ณต๊ฒฉ ๊ฒฝ๋กœ๋กœ ํ™œ์šฉ๋  ๊ฐ€๋Šฅ์„ฑ์ด ์ปค์ง€๊ณ  ์žˆ๋‹ค.

์ด๋Ÿฐ ๋ฆฌ์Šคํฌ๋Š” ๊ธฐ์—…์˜ ์ธ์‚ฌ ๊ตฌ์กฐ๊ฐ€ ๋ถˆ์•ˆ์ •ํ•ด์ง€๋ฉด์„œ ์‚ฌ๋žŒ์˜ ๊ฐ๋…์ด ์•ฝํ™”๋˜๊ณ , ์ด์— ์ƒ์‘ํ•˜๋Š” ํ†ต์ œ ์žฅ์น˜ ์—†์ด ๋„์ž…์„ ์„œ๋‘๋ฅผ ๋•Œ ํŠนํžˆ ๋‘๋“œ๋Ÿฌ์ง„๋‹ค. ํŒ”๋กœ์•Œํ†  ๋„คํŠธ์›์Šค์˜ 2026๋…„ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์ „๋ง์— ๋”ฐ๋ฅด๋ฉด, AI ์—์ด์ „ํŠธ๋Š” ๋ชฉํ‘œ ํƒˆ์ทจ, ๋„๊ตฌ ์˜ค์šฉ, ํ”„๋กฌํ”„ํŠธ ์ธ์ ์…˜, ์„€๋„์šฐ AI์™€ ๊ฐ™์€ ์ทจ์•ฝ์ ์„ ์ƒˆ๋กญ๊ฒŒ ๋งŒ๋“ค์–ด๋‚ผ ์ˆ˜ ์žˆ์œผ๋ฉฐ, ๊ธ€๋กœ๋ฒŒ ๊ธฐ์—… ์ „๋ฐ˜์—์„œ ํ™•์‚ฐ๋˜๋Š” ์ธ์‚ฌ ์ด๋™์ด ์ด๋Ÿฐ ๋ฆฌ์Šคํฌ๋ฅผ ๋”์šฑ ์ฆํญ์‹œํ‚ค๋Š” ์š”์ธ์œผ๋กœ ์ž‘์šฉํ•˜๊ณ  ์žˆ๋‹ค.

๋ณด์•ˆ ์ฑ…์ž„์ž๋„ ์ด๋Ÿฐ ๋ณ€ํ™”๋ฅผ ์ฃผ์˜ ๊นŠ๊ฒŒ ๋ฐ”๋ผ๋ณด๊ณ  ์žˆ๋‹ค. ์‹œํ์–ดํ”„๋ ˆ์ž„์˜ 2025๋…„ 4๋ถ„๊ธฐ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ํ†ต๊ณ„ ์ข…ํ•ฉ ์ž๋ฃŒ์™€ ๊ด€๋ จ ๋ณด๊ณ ์„œ์— ๋”ฐ๋ฅด๋ฉด, ์กฐ์‚ฌ ๋Œ€์ƒ ๊ธฐ์—…์˜ 60%๋Š” AI ์˜ค์šฉ์ด ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋ฅผ ์ด‰๋ฐœํ•˜๊ฑฐ๋‚˜ ํ™•๋Œ€ํ•  ์ˆ˜ ์žˆ๋‹ค๋Š” ์ ์— ๋Œ€ํ•ด ๋†’์€ ์šฐ๋ ค๋ฅผ ๋‚˜ํƒ€๋ƒˆ๋‹ค. ํ•œํŽธ ์‚ฌ์ด๋ฒ„์‹œํ๋ฆฌํ‹ฐ ์ธ์‚ฌ์ด๋”์Šค์˜ โ€˜2025 ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ ๋ณด๊ณ ์„œโ€™์— ์˜ํ•˜๋ฉด ์‘๋‹ต์ž์˜ 75%๋Š” ํ•˜์ด๋ธŒ๋ฆฌ๋“œ ๋ฐ ์›๊ฒฉ ๊ทผ๋ฌด ๋ชจ๋ธ์ด ํ–ฅํ›„ 3~5๋…„ ๋™์•ˆ ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋ฅผ ํ‚ค์šฐ๋Š” ๊ฐ€์žฅ ์ค‘์š”ํ•œ ์‹ ๊ทœ ์š”์ธ์ด ๋  ๊ฒƒ์ด๋ผ๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค. ๋ถ„์‚ฐ๋œ ๊ทผ๋ฌด ํ™˜๊ฒฝ์€ ๊ธ€๋กœ๋ฒŒ ์šด์˜ ํ™˜๊ฒฝ์—์„œ ์‚ฌ๋žŒ๊ณผ ๊ธฐ๊ณ„ ๋ชจ๋‘์˜ ์ด์ƒ ํ–‰๋™์„ ํƒ์ง€ํ•˜๊ณ  ํ†ต์ œํ•˜๊ธฐ๋ฅผ ํ•œ์ธต ์–ด๋ ต๊ฒŒ ๋งŒ๋“ค๊ณ  ์žˆ๋‹ค.

์ดˆ๊ธฐ ๊ฒฝ๊ณ  ์‹ ํ˜ธ

์ด๋Ÿฐ ๋ณ€ํ™”๋Š” ๊ฐ‘์ž‘์Šค๋Ÿฝ๊ฒŒ ๋‚˜ํƒ€๋‚˜์ง€ ์•Š์•˜๋‹ค. ์ˆ˜๋…„์— ๊ฑธ์ณ ๋ˆ„์ ๋ผ ์˜จ ๊ฒฝ๊ณ ๊ฐ€ ํ˜„์‹ค๋กœ ์ด์–ด์ง„ ๊ฒฐ๊ณผ๋‹ค.

์ง€๋‚œ 2021๋…„ ํ•„์ž์˜ ๊ธ€์ธ โ€˜๊ฐ„๊ณผ๋œ ๋‚ด๋ถ€์ž ์œ„ํ˜‘, ๊ธฐ๊ธฐ ์‹ ์›โ€™์—์„œ ๋‹น์‹œ DTEX ์‹œ์Šคํ…œ์ฆˆ์˜ ์ตœ๊ณ ๊ณ ๊ฐ์ฑ…์ž„์ž์˜€๋˜ ๋ผ์ž” ์ฟ ๋Š” ๊ธฐ๊ธฐ์—๋„ ์‚ฌ๋žŒ๊ณผ ๋™์ผํ•œ ์ˆ˜์ค€์˜ ๋‚ด๋ถ€์ž ์œ„ํ˜‘ ํ”„๋ ˆ์ž„์›Œํฌ๋ฅผ ์ ์šฉํ•ด์•ผ ํ•œ๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค. ๊ทธ๋Š” โ€œ์‚ฌ๋žŒ์—๊ฒŒ ์ ์šฉํ•˜๋Š” ๊ฒƒ๊ณผ ๊ฐ™์€ ์ˆ˜์ค€์œผ๋กœ ๋‚ด๋ถ€์ž ์œ„ํ˜‘ ํ”„๋ ˆ์ž„์›Œํฌ๋ฅผ ๊ธฐ๊ธฐ์— ๋” ๋งŽ์ด ์ ์šฉํ•  ํ•„์š”๊ฐ€ ์žˆ๋‹คโ€๋ผ๊ณ  ๋งํ–ˆ๋‹ค. ์ด ๋ฐœ์–ธ์€ API, ๋ด‡, ์Šคํฌ๋ฆฝํŠธ, ๋กœ๋ณดํ‹ฑ ํ”„๋กœ์„ธ์Šค ์ž๋™ํ™”(RPA)์™€ ๊ฐ™์€ ๊ธฐ๊ณ„ ์‹ ์›์ด ์ด๋ฏธ ์˜๋„์ ์ด๊ฑฐ๋‚˜ ๋น„์˜๋„์ ์ธ ์‚ฌ๊ณ ์˜ ํ†ต๋กœ๋กœ ์ž‘๋™ํ•˜๊ณ  ์žˆ์œผ๋ฉฐ, ์‚ฌ๋žŒ๊ณผ ๋งˆ์ฐฌ๊ฐ€์ง€๋กœ ๋ฉด๋ฐ€ํ•œ ๊ด€๋ฆฌ์™€ ๊ฒ€์ฆ์ด ํ•„์š”ํ•˜๋‹ค๋Š” ์ ์„ ๋ถ„๋ช…ํžˆ ๋ณด์—ฌ์คฌ๋‹ค.

์ด๋Ÿฌํ•œ ๊ด€์ ์€ 2022๋…„ ๊ธ€์ธ โ€˜๋‚ด๋ถ€์ž ์œ„ํ˜‘์œผ๋กœ์„œ์˜ ๊ธฐ๊ณ„: ๊ตํ† ๋Œ€ ๋ฐฑ์—… ๋ฐ์ดํ„ฐ ์‚ญ์ œ ์‚ฌ๊ฑด์ด ์ฃผ๋Š” ๊ตํ›ˆโ€™์—์„œ ํ•œ์ธต ๋” ๋ถ„๋ช…ํ•ด์กŒ๋‹ค. ํ•ด๋‹น ๊ธ€์€ ์‹ค์ œ ์ž๋™ํ™” ์‹คํŒจ ์‚ฌ๋ก€๋ฅผ ๋ถ„์„ํ•˜๋ฉฐ ์ด๋ฅผ โ€œ๊ธฐ๊ณ„๊ฐ€ ๋‚ด๋ถ€์ž ์œ„ํ˜‘์œผ๋กœ ์ž‘์šฉํ•œ ์ „ํ˜•์ ์ธ ์‚ฌ๋ก€โ€๋กœ ๊ทœ์ •ํ–ˆ๋‹ค. ํ†ต์ œ๋˜์ง€ ์•Š์€ ์Šคํฌ๋ฆฝํŠธ ์˜ค๋ฅ˜๋กœ ์ธํ•ด ํ•ต์‹ฌ ๋ฐฑ์—… ๋ฐ์ดํ„ฐ๊ฐ€ ์˜๊ตฌ ์‚ญ์ œ๋œ ์‚ฌ๊ฑด์€, ๊ทธ ๊ฒฐ๊ณผ์ธ ์น˜๋ช…์ ์ธ ์†์‹ค์ด ์•…์˜์ ์ธ ๋‚ด๋ถ€์ž๊ฐ€ ์ดˆ๋ž˜ํ•  ์ˆ˜ ์žˆ๋Š” ํ”ผํ•ด์™€ ๋ณธ์งˆ์ ์œผ๋กœ ๋‹ค๋ฅด์ง€ ์•Š๋‹ค๋Š” ์ ์„ ์ œ์‹œํ–ˆ๋‹ค.

2023๋…„ ์ค‘๋ฐ˜์— ์ด๋ฅด๋Ÿฌ ๋…ผ์˜์˜ ์ดˆ์ ์€ ๋ณด๋‹ค ๊ธ์ •์ ์ธ ๊ฐ€๋Šฅ์„ฑ์œผ๋กœ ์ด๋™ํ–ˆ๋‹ค. 2023๋…„ CSO ๊ธฐํš ๊ธฐ์‚ฌ โ€˜๋™๋ฃŒ๊ฐ€ ๊ธฐ๊ณ„์ผ ๋•Œ: CISO๊ฐ€ AI์— ๋Œ€ํ•ด ๋˜์ ธ์•ผ ํ•  8๊ฐ€์ง€ ์งˆ๋ฌธโ€™์€ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์—…๋ฌด ํ๋ฆ„์—์„œ AI๋ฅผ ํ˜‘์—… ํŒŒํŠธ๋„ˆ๋กœ ํ™œ์šฉํ•  ๊ฐ€๋Šฅ์„ฑ์„ ์กฐ๋ช…ํ•˜๋Š” ํ•œํŽธ, ๋จผ์ € ๋‚ด๋ถ€ ๊ตฌ์กฐ๋ฅผ ์ •ํ™•ํžˆ ์ดํ•ดํ•  ํ•„์š”๊ฐ€ ์žˆ๋‹ค๋Š” ์ ์„ ์งš์—ˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ํ˜„์žฌ โ€˜๋™๋ฃŒโ€™๋Š” ํญ๋ฐœ์ ์œผ๋กœ ๋Š˜์–ด๋‚ฌ๋‹ค. ํŒ”๋กœ์•Œํ†  ๋„คํŠธ์›์Šค๋Š” ๋งŽ์€ ๊ธฐ์—…์—์„œ ๊ธฐ๊ณ„ ์‹ ์›๊ณผ ์ž์œจํ˜• ์—์ด์ „ํŠธ ์ˆ˜๊ฐ€ ์‚ฌ๋žŒ๋ณด๋‹ค 82๋ฐฐ ๋งŽ์•„์งˆ ๊ฒƒ์œผ๋กœ ์ „๋งํ•˜๋ฉฐ, ์•ž์„  ๊ฒฝ๊ณ ๊ฐ€ 2026๋…„์—๋Š” ๊ธด๊ธ‰ํ•œ ๊ณผ์ œ๊ฐ€ ๋˜๊ณ  ์žˆ์Œ์„ ์‹œ์‚ฌํ–ˆ๋‹ค.

๋ถˆ์•ˆ์ •ํ•œ ์ธ์‚ฌ ๊ตฌ์กฐ์™€ ๊ธฐ๊ณ„ ํ™•์‚ฐ์˜ ์ถฉ๋Œ

์ •๋ฆฌํ•ด๊ณ ์™€ ๊ฒฝ์ œ์  ์••๋ฐ•์ด ๋งŒ๋“ค์–ด๋‚ธ ๋ณ€๋™์„ฑ ๋†’์€ ์ธ์‚ฌ ๊ตฌ์กฐ์™€, ํ†ต์ œ ์—†์ด ํ™•์žฅ๋˜๋Š” ๊ธฐ๊ณ„ ์—์ด์ „ํŠธ๊ฐ€ ๋งž๋ฌผ๋ฆฌ๋ฉด์„œ ๋ฆฌ์Šคํฌ๋Š” ์ค‘์ฒฉ๋˜๊ณ  ์žˆ๋‹ค. ๋น„์šฉ ๋ถ€๋‹ด์— ์ง๋ฉดํ•œ ๊ธฐ์—…์€ ๊ฑฐ๋ฒ„๋„Œ์Šค๋ณด๋‹ค AI ๋„์ž… ์†๋„๋ฅผ ์šฐ์„ ์‹œํ•˜๋Š” ๊ฒฝ์šฐ๊ฐ€ ๋งŽ๊ณ , ๊ทธ ๊ฒฐ๊ณผ ์„€๋„์šฐ AI๊ฐ€ ํ™•๋Œ€๋˜๊ณ  ๋ชจ๋‹ˆํ„ฐ๋ง ์—ญ๋Ÿ‰์€ ์•ฝํ™”๋˜๊ณ  ์žˆ๋‹ค. ๋™์‹œ์— ๊ธฐ์—…์„ ๋– ๋‚ฌ๊ฑฐ๋‚˜ ๋ถˆ๋งŒ์„ ํ’ˆ์€ ์ง์›์ด ์ ‘๊ทผ ๊ถŒํ•œ์„ ์ˆ˜์ตํ™”ํ•˜๊ฑฐ๋‚˜ ๋ฏผ๊ฐํ•œ ๋ฐ์ดํ„ฐ๋ฅผ ์œ ์ถœํ•˜๊ณ , ๋˜๋Š” ์—…๋ฌด์—์„œ ์ดํƒˆํ•˜๋ฉฐ ํ†ต์ œ ์ ˆ์ฐจ๋ฅผ ๋ฐฉ์น˜ํ•˜๊ธฐ๋„ ํ•œ๋‹ค. ์ด๋Š” ๊ณผ๊ฑฐ ๋…ธ์šด์„น(KnownSec) ์‚ฌ๋ก€์—์„œ๋„ ๋ชฉ๊ฒฉ๋๋‹ค. ๋‚ด๋ถ€์ž๊ฐ€ ํšŒ์‚ฌ๊ฐ€ ์ค‘๊ตญ ์ •๋ถ€์˜ ๊ณต๊ฒฉ์  ์‚ฌ์ด๋ฒ„ ์ž‘์ „ ์ธํ”„๋ผ์™€ ์—ฐ๊ณ„๋๋‹ค๋Š” ์‚ฌ์‹ค์„ ํญ๋กœํ•œ ํ•ด๋‹น ์‚ฌ๊ฑด์€, ์ค‘๊ตญ์˜ ์‚ฌ์ด๋ฒ„ ์—ญ๋Ÿ‰์„ ์ดํ•ดํ•˜๋Š” ๋ฐ ๋„์›€์ด ๋๋‹ค๋Š” ์ ์—์„œ ๋งŽ์€ ๋ณด์•ˆ ์ „๋ฌธ๊ฐ€์—๊ฒŒ ํ™˜์˜๋ฐ›์•˜์ง€๋งŒ, ๋™์‹œ์— ์–ด๋–ค ๊ธฐ์—…๋„ ๋ณ€๋™์„ฑ์ด๋ผ๋Š” ์š”์ธ์—์„œ ์ž์œ ๋กœ์šธ ์ˆ˜ ์—†๋‹ค๋Š” ์‚ฌ์‹ค์„ ๋“œ๋Ÿฌ๋ƒˆ๋‹ค.

์ง€์†์ ์ธ ์ •๋ฆฌ ํ•ด๊ณ ์™€ ๋ถˆํ™•์‹คํ•œ ์—ญํ• ์—์„œ ๋น„๋กฏ๋œ ๋ถˆ์•ˆ์ด ๊ธด์žฅ ์† ์‹ค์ˆ˜, ๊ณผ๋„ํ•œ ๊ถŒํ•œ, ์„ฑ๊ธ‰ํ•œ ์šฐํšŒ ๋Œ€์‘์œผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค๋Š” ์ ์€ ๋ถ„๋ช…ํ•˜๋‹ค. ์•…์˜๋ฅผ ๊ฐ–๊ณ  ์žˆ์ง€ ์•Š๋”๋ผ๋„ ๋ฐ์ดํ„ฐ๋Š” ๋…ธ์ถœ๋  ์ˆ˜ ์žˆ๊ณ , ๊ฒฐ๊ณผ์ ์œผ๋กœ ํ”ผํ•ด๋Š” ํ˜„์‹คํ™”๋œ๋‹ค. ์ธ์‚ฌ ๊ตฌ์กฐ์˜ ๋ณ€๋™์„ฑ๊ณผ ๊ธฐ๊ณ„ ํ™•์‚ฐ ๊ฐ„ ์ƒํ˜ธ์ž‘์šฉ์„ ๊ฐ„๊ณผํ•  ๊ฒฝ์šฐ, ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ ํ™˜๊ฒฝ์€ ๋”์šฑ ์ฆํญ๋œ๋‹ค.

๋ณ€๋™์„ฑ ๋†’์€ ์‹œ๋Œ€์— ํ•„์š”ํ•œ ์ด์ฒด์  ๋Œ€์‘ ์ „๋žต

์ด์ œ ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ ์ „๋žต์—๋Š” ํ•„์ˆ˜์ ์œผ๋กœ ์ผ๊ด€์„ฑ์ด ์š”๊ตฌ๋˜๊ณ  ์žˆ๋‹ค. ์ด์ฒด์ ์ธ ์ ‘๊ทผ ๋ฐฉ์‹์—๋Š” ์‚ฌ๋žŒ๊ณผ ๊ธฐ๊ณ„์˜ ํ–‰๋™์„ ํ†ตํ•ฉ ๊ด€์ฐฐํ•˜๋Š” ํ–‰๋™ ๋ถ„์„์ด ํ•„์š”ํ•˜๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ๊ตฌ์กฐ์กฐ์ • ๊ณผ์ •์—์„œ ๋‚˜ํƒ€๋‚˜๋Š” ๊ฐ์ • ๋ณ€ํ™”๋‚˜ ๊ทผ๋ฌด ์™ธ ์‹œ๊ฐ„์˜ ๋ฐ์ดํ„ฐ ์ˆ˜์ง‘๊ณผ ๊ฐ™์€ ์‚ฌ๋žŒ์˜ ํŒจํ„ด, ๋น„์ •์ƒ์ ์ธ API ํ˜ธ์ถœ์ด๋‚˜ ์—์ด์ „ํŠธ ํ™œ๋™ ๊ธ‰์ฆ๊ณผ ๊ฐ™์€ ๊ธฐ๊ณ„์˜ ํ–‰๋™์„ ๋™์‹œ์— ๋ชจ๋‹ˆํ„ฐ๋งํ•˜๋Š” ๋ฐฉ์‹์ด๋‹ค.

์žฌ๊ต์œก ํ”„๋กœ๊ทธ๋žจ์€ ์ง์›์„ ์ผ์ž๋ฆฌ ๋Œ€์ฒด์˜ ํฌ์ƒ์ž๊ฐ€ ์•„๋‹Œ AI๋กœ ๊ฐ•ํ™”๋œ ์—ญํ• ์˜ ํŒŒํŠธ๋„ˆ๋กœ ์ธ์‹ํ•˜๊ฒŒ ํ•จ์œผ๋กœ์จ ์ธ์žฌ ์œ ์ถœ์„ ๋ง‰๊ณ  ๊ธฐ์—… ๋‚ด ๋ฐ˜๊ฐ์„ ์ค„์ด๋Š” ๋ฐ ๋„์›€์ด ๋œ๋‹ค. ์ธ์ฆ, ์ตœ์†Œ ๊ถŒํ•œ ์ ‘๊ทผ, ์ง€์†์ ์ธ ๋ชจ๋‹ˆํ„ฐ๋ง ๋“ฑ ๊ธฐ๊ณ„ ์‹ ์›์— ๋Œ€ํ•œ ๊ฐ•๋ ฅํ•œ ๊ฑฐ๋ฒ„๋„Œ์Šค๋Š” ์ œ๋กœ ํŠธ๋Ÿฌ์ŠคํŠธ ์›์น™์„ ๋น„์ธ๊ฐ„ ์˜์—ญ๊นŒ์ง€ ํ™•์žฅํ•˜๋Š” ๊ธฐ๋ฐ˜์ด ๋œ๋‹ค. ๋ฌด์—‡๋ณด๋‹ค ์ธ์‚ฌ ๋ถ€์„œ์™€ ๋ณด์•ˆ ์กฐ์ง ๊ฐ„์˜ ์—ฐ๊ฒฐ์„ ๊ฐ•ํ™”ํ•ด, ๋ณ€๋™์„ฑ์˜ ์ดˆ๊ธฐ ์‹ ํ˜ธ๊ฐ€ ์‹ค์ œ ์œ„ํ˜‘์œผ๋กœ ๋“œ๋Ÿฌ๋‚˜๊ธฐ ์ „์— ์ด๋ฅผ ํฌ์ฐฉํ•˜๋Š” ์ฒด๊ณ„๊ฐ€ ์ค‘์š”ํ•˜๋‹ค.

์„ ์ œ์ ์ด๊ณ  ํ†ตํ•ฉ๋œ ์กฐ์น˜๊ฐ€ ์—†๋‹ค๋ฉด ํŒŒ๊ธ‰ ํšจ๊ณผ๋Š” ์ƒ๋‹นํ•  ์ˆ˜ ์žˆ๋‹ค. ์นจํ•ด๋œ AI ์—์ด์ „ํŠธ ํ•˜๋‚˜๋งŒ์œผ๋กœ๋„ ์‚ฌ๋žŒ์ด ๋”ฐ๋ผ๊ฐˆ ์ˆ˜ ์—†๋Š” ์†๋„๋กœ ํ…Œ๋ผ๋ฐ”์ดํŠธ ๊ทœ๋ชจ์˜ ๋ฐ์ดํ„ฐ๋ฅผ ์œ ์ถœํ•  ์ˆ˜ ์žˆ๋‹ค. ๋˜ํ•œ ๊ณผ๊ฑฐ ์‚ฌ๋ก€๊ฐ€ ๋ณด์—ฌ์ฃผ๋“ฏ, ๋ถˆ๋งŒ์„ ํ’ˆ์€ ์ง์›์€ ๋‚จ์•„์žˆ๋Š” ์ž๊ฒฉ ์ฆ๋ช…์„ ์ด์šฉํ•ด ๋ฐฑ๋„์–ด๋ฅผ ์‹ฌ๊ฑฐ๋‚˜ ์ •๋ณด๋ฅผ ํƒˆ์ทจยทํŒ๋งคํ•˜๊ณ , ์˜๋„์ ์ธ ํŒŒ๊ดด ํ–‰์œ„๋ฅผ ์ €์ง€๋ฅผ ์ˆ˜๋„ ์žˆ๋‹ค. ๋ฆฌ์Šคํฌ์˜ ๋ฒ”์œ„๋Š” ๋” ์ด์ƒ ๊ฐœ๋ณ„ ์‚ฌ๊ฑด์— ๋จธ๋ฌผ์ง€ ์•Š๋Š”๋‹ค. ์ด์ œ ๊ทธ ์˜ํ–ฅ์€ ๊ณต๊ธ‰๋ง๋ถ€ํ„ฐ ํ•ต์‹ฌ ์ธํ”„๋ผ์— ์ด๋ฅด๊ธฐ๊นŒ์ง€ ์ „์ฒด ์ƒํƒœ๊ณ„๋กœ ํ™•์‚ฐ๋˜๊ณ  ์žˆ๋‹ค.

์•ž์œผ๋กœ์˜ ๋ฐฉํ–ฅ

2026๋…„์— ์ ‘์–ด๋“ค๋ฉฐ ๋ฉ”์‹œ์ง€๋Š” ๋ถ„๋ช…ํ•ด์กŒ๋‹ค. ๋‚ด๋ถ€์ž ๋ฆฌ์Šคํฌ๋Š” ๋” ์ด์ƒ ์‚ฌ๋žŒ๋งŒ์˜ ๋ฌธ์ œ๊ฐ€ ์•„๋‹ˆ๋‹ค. ์ด๋Š” ๊ฒฝ์ œ์  ์••๋ฐ•๊ณผ AI๋กœ ์ธํ•œ ์ผ์ž๋ฆฌ ๋ณ€ํ™”, ๊ทธ๋ฆฌ๊ณ  ์กฐ์ง ์ „๋ฐ˜์˜ ์ธ๋ ฅ ๋ณ€๋™์„ฑ์ด ์ „๋ก€ ์—†๋Š” ์†๋„๋กœ ์ฆํญ์‹œํ‚ค๊ณ  ์žˆ๋Š” โ€˜๋ณ€๋™์„ฑ์˜ ๋ฌธ์ œโ€™๋‹ค. ์ด๋ฅผ ํ•ด๊ฒฐํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ์™ธ๋ถ€ ์œ„ํ˜‘์— ๋Œ€์‘ํ•  ๋•Œ ์ ์šฉํ•ด ์˜จ ์ˆ˜์ค€์˜ ์—„๊ฒฉํ•จ์„ ๊ธฐ์—… ๋‚ด๋ถ€์—๋„ ๊ทธ๋Œ€๋กœ ์ ์šฉํ•ด์•ผ ํ•˜๋ฉฐ, ์„ ์ œ์ ์ธ ์‹œ๊ฐ๊ณผ ์ผ๊ด€๋œ ์ „๋žต, ๊ทธ๋ฆฌ๊ณ  ๋ณ€ํ™”์— ์ ์‘ํ•˜๋ ค๋Š” ์˜์ง€๊ฐ€ ์š”๊ตฌ๋œ๋‹ค.
dl-ciokorea@foundryco.com

Monnai Raises $12 Million for Identity and Risk Data Infrastructure

16 January 2026 at 09:51

The company will use the investment to accelerate the adoption of its solution among financial institutions and digital businesses.

The post Monnai Raises $12 Million for Identity and Risk Data Infrastructure appeared first on SecurityWeek.

IT portfolio management: Optimizing IT assets for business value

16 January 2026 at 05:01

In finance, portfolio management involves the strategic selection of a collection of investments that align with an investorโ€™s financial goals and risk tolerance.ย 

This approach can also apply to ITโ€™s portfolio of systems, with one addition: IT must also assess each asset in that portfolio for operational performance.

Todayโ€™s IT is a mix of legacy, cloud-based, and emerging or leading-edge systems, such as AI. Each category contains mission-critical assets, but not every system performs equally well when it comes to delivering business, financial, and risk avoidance value to the enterprise. How can CIOs optimize their IT portfolio performance?

Here are five evaluative criteria for maximizing the value of your IT portfolio.

Mission-critical assets

The enterpriseโ€™s most critical systems for conducting day-to-day business are a category unto themselves. These systems may be readily apparent, or hidden deep in a technical stack. So all assets should be evaluated as to how mission-critical they are.

For example, it might be that your ERP solution is a 24/7 โ€œmust haveโ€ system because it interfaces with a global supply chain that operates around the clock and drives most company business. On the other hand, an HR application or a marketing analytics system could probably be down for a day with work-arounds by staff.

More granularly, the same type of analysis needs to be performed on IT servers, networks and storage. Which resources do you absolutely have to have, and which can you do without, if only temporarily?

As IT identifies these mission-critical assets, it should also review the list with end-users and management to assure mutual agreement.

Asset utilization

Zylo, which manages SaaS inventory, licenses, and renewals, estimates that โ€œ53% of SaaS licenses go unused or underused on average, so finding dormant software should be a priority.โ€ This โ€œshelfwareโ€ problem isnโ€™t only with SaaS; it can be found in underutilized legacy and modern systems, in obsolete servers and disk drives, and in network technologies that arenโ€™t being used but are still being paid for.

Shelfware in all forms exists because IT is too busy with projects to stop for inventory and obsolescence checks. Consequently, old stuff gets set on the shelf and auto-renews.

The shelfware issue should be solved if IT portfolios are to be maximized for performance and profitability. If IT canโ€™t spare the time for a shelfware evaluation, it can bring in a consultant to perform an assessment of asset use and to flag never-used or seldom-used assets for repurposing or elimination.

Asset risk

The goal of an IT portfolio is to contain assets that are presently relevant and will continue to be relevant well into the future. Consequently, asset risk should be evaluated for each IT resource.

Is the resource at risk for vendor sunsetting or obsolescence? Is the vendor itself unstable? Does IT have the on-staff resources to continue running a given system, no matter how good it is (a custom legacy system written in COBOL and Assembler, for example)? Is a particular system or piece of hardware becoming too expense to run? Do existing IT resources have a clear path to integration with the new technologies that will populate IT in the future?

For IT assets that are found to be at risk, strategies should be enacted to either get them out of โ€œriskโ€ mode, or to replace them.

Asset IP value

There is a CIO I know in the hospitality industry who boasts that his hotel reservation program, and the mainframe it runs on, have not gone down in 30 years. He attributes much of this success to custom code and a specialized operating system that the company uses, and he and his management view it as a strategic advantage over the competition.

He is not the only CIO who feels this way. There are many companies that operate with their โ€œown IT special sauceโ€ that makes their businesses better. This special sauce could be a legacy system or an AI algorithm. Assets like these that become IT intellectual property (IP) present a case for preservation in the IT portfolio.

Asset TCO and ROI

Is every IT asset pulling its weight? Like monetary and stock investments, technologies under management must show they are continuing to produce measurable and sustainable value. The primary indicators of asset value that IT uses are total cost of ownership (TCO) and return on investment (ROI).

TCO is what gauges the value of an asset over time. For instance, investments in new servers for the data center might have paid off four years ago, but now the data center has an aging bay of servers with obsolete technology and it is cheaper to relocate compute to the cloud.

ROI is used when new technology is acquired. Metrics are set that define at what point the initial investment into the technology will be recouped. Once the breakeven point has been reached, ROI continues to be measured because the company wants to see new profitability and/or savings materialize from the investment. Unfortunately, not all technology investments go as planned. Sometimes the initial business case that called for the technology changes or unforeseen complications arise that turn the investment into a loss leader.

In both cases, whether the issue is TCO or ROI, the IT portfolio must be maintained in a way such that losing or wasted assets are removed.

Summing it up

IT portfolio management is an important part of what CIOs should be doing on an ongoing basis, but all too often, it is approached in a reactionary mode โ€” for example, with a system being replaced only when users ask for it to be replaced, or a server needing to be removed from the data center because it fails.

The CEO, the CFO, and other key stakeholders whom the CIO deals with during technology budgeting time donโ€™t help, either. While they will be interested in how long it will take for a new technology acquisition to โ€œpay for itself,โ€ no one ever asks the CIO about the big picture of IT portfolio management: how the overall assets in the IT portfolio are performing, and which assets will require replacement for the portfolio to sustain or improve company value.

To improve their own IT management, CIOs should seize the portfolio management opportunity. They can do this by establishing a portfolio for their companyโ€™s IT assets and reviewing these assets periodically with those in the enterprise who have direct say over IT budgets.

IT portfolio management will resonate with the CFO and CEO because both continually work with financial and risk portfolios for the business. Broader visibility of the IT portfolio will also make it easier for CIOs to present new technology recommendations and to obtain approvals for replacing or upgrading existing assets when these actions are called for.

See also:

๊ตญ๊ฒฝ ๋„˜๋‚˜๋“œ๋Š” AI ๋ฆฌ์Šคํฌ, ๊ธ€๋กœ๋ฒŒ ๊ธฐ์—…์ด ๊ณ ๋ คํ•  ํ•ต์‹ฌ ์ „๋žต 5๊ฐ€์ง€

9 January 2026 at 02:13

2024๋…„ ๋ง ๊ธฐ์ค€์œผ๋กœ ์ด๋ฏธ 70๊ฐœ๊ตญ ์ด์ƒ์ด AI ๊ด€๋ จ ๊ทœ์ œ๋ฅผ ๋ฐœํ‘œํ–ˆ๊ฑฐ๋‚˜ ์ œ์ • ์ž‘์—…์„ ์ง„ํ–‰ ์ค‘์ด๋‹ค. ํ•˜์ง€๋งŒ โ€˜์ฑ…์ž„ ์žˆ๋Š” ์‚ฌ์šฉโ€™์— ๋Œ€ํ•œ ์ •์˜๋Š” ๊ตญ๊ฐ€๋ณ„๋กœ ๊ทน๋ช…ํ•˜๊ฒŒ ๋‹ค๋ฅผ ์ˆ˜ ์žˆ๋‹ค. ํ•œ ์‹œ์žฅ์—์„œ ํ˜์‹ ์„ ์ด‰์ง„ํ•˜๋Š” ์š”์†Œ๊ฐ€ ๋‹ค๋ฅธ ์‹œ์žฅ์—์„œ๋Š” ๊ทœ์ œ ์ง‘ํ–‰์˜ ๋Œ€์ƒ์ด ๋  ์ˆ˜ ์žˆ๋‹ค.

๊ทธ ๊ฒฐ๊ณผ, ๊ธ€๋กœ๋ฒŒ ๊ธฐ์—…์ด ๊ตญ๊ฒฝ์„ ๋„˜์–ด AI๋ฅผ ํ™•์žฅํ•˜๋Š” ๊ณผ์ •์—์„œ ๋ฐ˜๋“œ์‹œ ๊ณ ๋ คํ•ด์•ผ ํ•  ๋ฒ•๊ณผ ๊ทœ์ œ๋Š” ์ ์  ๋” ๋ณต์žกํ•ด์ง€๊ณ  ์žˆ๋‹ค.

์˜ˆ๋ฅผ ๋“ค์–ด ๋ฏธ๊ตญ ์ •๋ถ€์˜ ํ˜„์žฌ AI ์ „๋žต์€ ์ƒˆ๋กœ์šด ๊ทœ์ œ๋ฅผ ๋„์ž…ํ•˜๊ธฐ๋ณด๋‹ค, ๊ธฐ์กด ๋ฒ•๋ฅ ์„ ์ค€์ˆ˜ํ•˜๋Š” ๋ฒ”์œ„ ๋‚ด์—์„œ ๊ฒฝ์ œ ์ „๋ฐ˜์— ๊ฑธ์นœ ์ฑ…์ž„ ์žˆ๋Š” ๋„์ž…์„ ๊ฐ•์กฐํ•˜๊ณ  ์žˆ๋‹ค. ์‚ฌ์ „ ๊ทœ์ œ๋ณด๋‹ค๋Š” ํ‘œ์ค€์ด ์ž์—ฐ์Šค๋Ÿฝ๊ฒŒ ํ˜•์„ฑ๋˜๊ณ , ์‹ค์ œ๋กœ ํ™•์ธ๋œ ํ”ผํ•ด์— ๋Œ€์‘ํ•˜๋Š” ๋ฐฉ์‹์„ ์„ ํ˜ธํ•œ๋‹ค. ๋ฐ˜๋ฉด EU AI ๋ฒ•์•ˆ์€ ๊ด‘๋ฒ”์œ„ํ•œ ๋ฆฌ์Šคํฌ ๊ธฐ๋ฐ˜ ๋ถ„๋ฅ˜ ์ฒด๊ณ„๋ฅผ ๋„์ž…ํ•˜๊ณ , ๋ฒค๋”, ๋„์ž… ๊ธฐ์—…, ์‚ฌ์šฉ์ž์—๊ฒŒ ์—„๊ฒฉํ•œ ์˜๋ฌด๋ฅผ ๋ถ€๊ณผํ•œ๋‹ค. ์บ˜๋ฆฌํฌ๋‹ˆ์•„์—์„œ ๊ทœ์ •์„ ์ถฉ์กฑํ•œ ์‹œ์Šคํ…œ์ด EU์˜ ๊ธฐ์ค€์—๋Š” ๋ถ€์ ํ•ฉ ํŒ์ •์„ ๋ฐ›์„ ์ˆ˜ ์žˆ์œผ๋ฉฐ, ๋‰ด์š•์—์„œ ํ•™์Šต๋œ ์•Œ๊ณ ๋ฆฌ์ฆ˜์ด ๋ธŒ๋คผ์…€์—์„œ๋Š” โ€˜๊ณ ์œ„ํ—˜โ€™ ์‹œ์Šคํ…œ์œผ๋กœ ๋ถ„๋ฅ˜๋ผ ์—„๊ฒฉํ•œ ๊ฒ€ํ†  ๋Œ€์ƒ์ด ๋  ์ˆ˜ ์žˆ๋‹ค.

AI ์‹œ์Šคํ…œ, ๋ฐ์ดํ„ฐ, ์˜์‚ฌ๊ฒฐ์ •์ด ์—ฌ๋Ÿฌ ๊ด€ํ• ๊ถŒ์„ ์˜ค๊ฐ€๋Š” ์ƒํ™ฉ์—์„œ ๊ทœ์ œ ์‚ฌ๊ฐ์ง€๋Œ€๋ฅผ ํ”ผํ•˜๋ ค๋ฉด, ๊ฐœ๋ฐœ ๋‹จ๊ณ„๋ถ€ํ„ฐ ๋ฐฐํฌ์— ์ด๋ฅด๊ธฐ๊นŒ์ง€ ๊ฑฐ๋ฒ„๋„Œ์Šค ์ „๋ฐ˜์— ์ปดํ”Œ๋ผ์ด์–ธ์Šค๋ฅผ ๋‚ด์žฌํ™”ํ•ด์•ผ ํ•œ๋‹ค. ๊ตญ๊ฒฝ ๊ฐ„ AI ๋ฆฌ์Šคํฌ ๊ด€๋ฆฌ๋ฅผ ์œ„ํ•ด ๊ณ ๋ คํ•ด์•ผ ํ•  5๊ฐ€์ง€ ํ•ต์‹ฌ ์ „๋žต์„ ์†Œ๊ฐœํ•œ๋‹ค.

1. AI๊ฐ€ ์ง€๋‚˜๊ฐ€๋Š” ๋ชจ๋“  ๊ตญ๊ฐ€์˜ ๊ทœ์ œ๋ฅผ ์ถ”์ ํ•˜๋ผ

๊ธ€๋กœ๋ฒŒ AI ๊ฑฐ๋ฒ„๋„Œ์Šค๋Š” ๋„๊ตฌ๊ฐ€ ์–ด๋””์—์„œ ๊ฐœ๋ฐœ๋๋Š”์ง€๋ฟ ์•„๋‹ˆ๋ผ, ๊ทธ ๊ฒฐ๊ณผ๋ฌผ๊ณผ ๋ฐ์ดํ„ฐ๊ฐ€ ์–ด๋””๋กœ ์ด๋™ํ•˜๋Š”์ง€์— ๋Œ€ํ•œ ๊ฐ€์‹œ์„ฑ์„ ํ™•๋ณดํ•˜๋Š” ๋ฐ์„œ ์ถœ๋ฐœํ•œ๋‹ค. ํ•œ ๊ตญ๊ฐ€์—์„œ ๊ตฌ์ถ•๋œ AI ๋ชจ๋ธ์€ ๋‹ค๋ฅธ ๊ตญ๊ฐ€์—์„œ ๋ฐฐํฌ, ์žฌํ•™์Šต, ์žฌ์‚ฌ์šฉ๋  ์ˆ˜ ์žˆ๋Š”๋ฐ, ์ด๋•Œ ์ƒˆ๋กœ์šด ๊ทœ์ œ ์ฒด๊ณ„์— ํŽธ์ž…๋๋‹ค๋Š” ์‚ฌ์‹ค์„ ๊ธฐ์—…์ด ์ธ์ง€ํ•˜์ง€ ๋ชปํ•˜๋Š” ๊ฒฝ์šฐ๊ฐ€ ์ ์ง€ ์•Š๋‹ค.

์—ฌ๋Ÿฌ ๊ตญ๊ฐ€์—์„œ ์‚ฌ์—…์„ ์ „๊ฐœํ•˜๋Š” ๊ธฐ์—…์€ ๋ชจ๋“  AI ์‚ฌ์šฉ๋ก€์™€ ๋ฒค๋” ๊ด€๊ณ„, ๋ฐ์ดํ„ฐ์…‹์„ ์ง€๋ฆฌ์  ์œ„์น˜์™€ ์—…๋ฌด ๊ธฐ๋Šฅ๋ณ„๋กœ ์ •๋ฆฌํ•œ AI ์ธ๋ฒคํ† ๋ฆฌ๋ฅผ ์œ ์ง€ํ•ด์•ผ ํ•œ๋‹ค. ์ด๋Š” ์–ด๋–ค ๋ฒ•๊ณผ ๊ทœ์ œ๊ฐ€ ์ ์šฉ๋˜๋Š”์ง€๋ฅผ ๋ช…ํ™•ํžˆ ํ•  ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ, ์˜์กด์„ฑ๊ณผ ์ž ์žฌ์  ๋ฆฌ์Šคํฌ๋ฅผ ๋“œ๋Ÿฌ๋‚ด๋Š” ์—ญํ• ๋„ ํ•œ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ๋ฏธ๊ตญ ์†Œ๋น„์ž ๋ฐ์ดํ„ฐ๋ฅผ ํ•™์Šตํ•œ ๋ชจ๋ธ์ด ์œ ๋Ÿฝ ๊ณ ๊ฐ์— ๋Œ€ํ•œ ์˜์‚ฌ๊ฒฐ์ •์— ํ™œ์šฉ๋˜๋Š” ์ƒํ™ฉ์ด ์ด์— ํ•ด๋‹นํ•œ๋‹ค.

์ด๋Š” AI๋ฅผ ์œ„ํ•œ ์ปดํ”Œ๋ผ์ด์–ธ์Šค ์ง€๋„๋ฅผ ๊ตฌ์ถ•ํ•˜๋Š” ๊ณผ์ •์œผ๋กœ ๋ณผ ์ˆ˜ ์žˆ๋‹ค. ๊ธฐ์ˆ  ์Šคํƒ๊ณผ ๊ธ€๋กœ๋ฒŒ ์‚ฌ์—… ๋ฒ”์œ„๊ฐ€ ๋ณ€ํ™”ํ•จ์— ๋”ฐ๋ผ ํ•จ๊ป˜ ์ง„ํ™”ํ•˜๋Š”, ์‚ด์•„์žˆ๋Š” ๋ฌธ์„œ๋กœ ๋ด์•ผ ํ•œ๋‹ค.

2. ๊ฐ ์ง€์—ญ๋ณ„ ๊ทœ์ œ ๋ฐฉ์‹์˜ ํ•ต์‹ฌ ์ฐจ์ด๋ฅผ ์ดํ•ดํ•˜๋ผ

์ค‘๋Œ€ํ•œ ์ปดํ”Œ๋ผ์ด์–ธ์Šค ๋ฆฌ์Šคํฌ๋Š” AI๊ฐ€ ๋ชจ๋“  ์ง€์—ญ์—์„œ ๋™์ผํ•œ ๋ฐฉ์‹์œผ๋กœ ๊ทœ์ œ๋œ๋‹ค๊ณ  ๊ฐ€์ •ํ•˜๋Š” ๋ฐ์„œ ๋น„๋กฏ๋œ๋‹ค. EU AI ๋ฒ•์•ˆ์€ AI ์‹œ์Šคํ…œ์„ ์ตœ์†Œ, ์ œํ•œ, ๊ณ ์œ„ํ—˜, ํ—ˆ์šฉ ๋ถˆ๊ฐ€ ๋“ฑ ๋ฆฌ์Šคํฌ ์ˆ˜์ค€์— ๋”ฐ๋ผ ๋ถ„๋ฅ˜ํ•˜๊ณ , ์ฑ„์šฉ, ๋Œ€์ถœ, ํ—ฌ์Šค์ผ€์–ด, ๊ณต๊ณต ์„œ๋น„์Šค์™€ ๊ฐ™์€ ๊ณ ์œ„ํ—˜ ์˜์—ญ์— ๋Œ€ํ•ด์„œ๋Š” ์ƒ์„ธํ•˜๊ณ  ์—„๊ฒฉํ•œ ์š”๊ฑด์„ ๋ถ€๊ณผํ•œ๋‹ค. ์ด๋ฅผ ์ค€์ˆ˜ํ•˜์ง€ ์•Š์„ ๊ฒฝ์šฐ ์ตœ๋Œ€ 3,500๋งŒ ์œ ๋กœ ๋˜๋Š” ์ „ ์„ธ๊ณ„ ์—ฐ๊ฐ„ ๋งค์ถœ์˜ 7%์— ํ•ด๋‹นํ•˜๋Š” ๊ณผ์ง•๊ธˆ์ด ๋ถ€๊ณผ๋  ์ˆ˜ ์žˆ๋‹ค.

๋ฐ˜๋ฉด ๋ฏธ๊ตญ์—๋Š” ๋‹จ์ผ ์—ฐ๋ฐฉ ์ฐจ์›์˜ AI ๊ทœ์ œ ํ”„๋ ˆ์ž„์›Œํฌ๊ฐ€ ์กด์žฌํ•˜์ง€ ์•Š๋Š”๋‹ค. ์ด๋กœ ์ธํ•ด ์บ˜๋ฆฌํฌ๋‹ˆ์•„, ์ฝœ๋กœ๋ผ๋„, ์ผ๋ฆฌ๋…ธ์ด ๋“ฑ ์ผ๋ถ€ ์ฃผ์—์„œ ํˆฌ๋ช…์„ฑ, ์†Œ๋น„์ž ํ”„๋ผ์ด๋ฒ„์‹œ ๋ณดํ˜ธ, ํŽธํ–ฅ ์™„ํ™”์— ์ดˆ์ ์„ ๋‘” ์ •์ฑ…์„ ๊ฐ๊ฐ ๋„์ž…ํ•˜๊ณ  ์žˆ๋‹ค. ๊ณ ์šฉ๊ธฐํšŒ๊ท ๋“ฑ์œ„์›ํšŒ(EEOC)์™€ ์—ฐ๋ฐฉ๊ฑฐ๋ž˜์œ„์›ํšŒ(FTC) ๋“ฑ ์—ฐ๋ฐฉ ๊ธฐ๊ด€ ์—ญ์‹œ ๊ธฐ์กด ๋ฒ•๋ฅ ์„ ํ™œ์šฉํ•ด AI์™€ ๊ด€๋ จ๋œ ์ฐจ๋ณ„ ํ–‰์œ„๋‚˜ ๊ธฐ๋งŒ์  ๊ด€ํ–‰์„ ๋‹จ์†ํ•˜๊ณ  ์žˆ๋‹ค.

๋‹ค๊ตญ์  ๊ธฐ์—… ์ž…์žฅ์—์„œ๋Š” ํ•˜๋‚˜์˜ ์ œํ’ˆ์— ์—ฌ๋Ÿฌ ๊ฐœ์˜ ๊ทœ์ œ ์ค€์ˆ˜ ๋ชจ๋ธ์ด ํ•„์š”ํ•˜๋‹ค๋Š” ์˜๋ฏธ๋‹ค. ๋ฏธ๊ตญ ์˜์—… ์กฐ์ง์— ๋„์ž…๋œ ์ƒ์„ฑํ˜• AI ์–ด์‹œ์Šคํ„ดํŠธ๋Š” ํ˜„์ง€ ๋ฒ•๋ฅ ์ƒ ์ €์œ„ํ—˜์œผ๋กœ ๋ถ„๋ฅ˜๋  ์ˆ˜ ์žˆ์ง€๋งŒ, ์œ ๋Ÿฝ์˜ ๊ณ ๊ฐ ์ ‘์  ํ™˜๊ฒฝ์—์„œ ํ™œ์šฉ๋  ๊ฒฝ์šฐ โ€˜๊ณ ์œ„ํ—˜โ€™ ์‹œ์Šคํ…œ์œผ๋กœ ๊ฐ„์ฃผ๋ผ ์ „ํ˜€ ๋‹ค๋ฅธ ์ˆ˜์ค€์˜ ๊ทœ์ œ ์ ์šฉ์„ ๋ฐ›์„ ์ˆ˜ ์žˆ๋‹ค.

3. ํš์ผํ™”๋œ AI ์ •์ฑ…์„ ์ ์šฉํ•˜์ง€ ๋ง๋ผ

๊ธฐ์—…์˜ AI ์ •์ฑ…์€ ๊ณต์ •์„ฑ, ํˆฌ๋ช…์„ฑ, ์ฑ…์ž„์„ฑ๊ณผ ๊ฐ™์€ ๋ณดํŽธ์  ์›์น™์„ ์ œ์‹œํ•ด์•ผ ํ•˜์ง€๋งŒ, ๋ชจ๋“  ์ง€์—ญ์— ๋™์ผํ•œ ํ†ต์ œ ๋ฐฉ์‹์„ ์š”๊ตฌํ•ด์„œ๋Š” ์•ˆ ๋œ๋‹ค. ์ง€๋‚˜์น˜๊ฒŒ ๊ฒฝ์ง๋œ ํ”„๋ ˆ์ž„์›Œํฌ๋Š” ์ผ๋ถ€ ์ง€์—ญ์—์„œ๋Š” ํ˜์‹ ์„ ์ €ํ•ดํ•˜๊ณ  ๋‹ค๋ฅธ ์ง€์—ญ์—์„œ๋Š” ํ•ต์‹ฌ์ ์ธ ์ปดํ”Œ๋ผ์ด์–ธ์Šค ์š”๊ตฌ ์‚ฌํ•ญ์„ ๋†“์น˜๋Š” ๊ฒฐ๊ณผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค.

๋Œ€์‹  ์˜๋„์™€ ์ง€์—ญ์— ๋”ฐ๋ผ ํ™•์žฅ ๊ฐ€๋Šฅํ•œ ๊ฑฐ๋ฒ„๋„Œ์Šค ์ฒด๊ณ„๋ฅผ ๋งˆ๋ จํ•ด์•ผ ํ•œ๋‹ค. ์œค๋ฆฌ์  AI์— ๋Œ€ํ•œ ๊ธ€๋กœ๋ฒŒ ๊ธฐ์ค€์„ ๋จผ์ € ์ •๋ฆฝํ•œ ๋’ค, ์—ฌ๊ธฐ์— ์ง€์—ญ๋ณ„ ์ง€์นจ๊ณผ ์‹คํ–‰ ๊ทœ์น™์„ ๋‹จ๊ณ„์ ์œผ๋กœ ๋ง๋ถ™์ด๋Š” ๋ฐฉ์‹์ด๋‹ค. ์ด ์ ‘๊ทผ๋ฒ•์€ ์ผ๊ด€์„ฑ์„ ์œ ์ง€ํ•˜๋ฉด์„œ๋„ ๊ฐ ์ง€์—ญ์˜ ํŠน์„ฑ์„ ๋ฌด์‹œํ•˜์ง€ ์•Š๋Š”๋‹ค. EU์˜ ๊นŒ๋‹ค๋กœ์šด ๋ฌธ์„œํ™” ์š”๊ตฌ๋ฅผ ์ถฉ์กฑํ•  ์ˆ˜ ์žˆ๋Š” ์œ ์—ฐ์„ฑ๊ณผ, ์ฃผ ๋‹จ์œ„ ๋ฒ•๋ฅ  ๋ณ€ํ™”์— ๋Œ€์‘ํ•  ์ˆ˜ ์žˆ๋Š” ๋ฏผ์ฒฉ์„ฑ, ์•„์ง AI ๊ทœ์ œ๊ฐ€ ๋ช…ํ™•ํ•˜์ง€ ์•Š์€ ์‹œ์žฅ์—์„œ๋„ ์•ˆ์ •์ ์œผ๋กœ ์šด์˜ํ•  ์ˆ˜ ์žˆ๋Š” ๋ช…ํ™•์„ฑ์„ ๋™์‹œ์— ํ™•๋ณดํ•  ์ˆ˜ ์žˆ๋‹ค.

์ด ๊ณผ์ •์—์„œ ๊ฐ€์žฅ ์—„๊ฒฉํ•œ ๊ทœ์ œ๋ฅผ ๊ธฐ์ค€์ ์œผ๋กœ ์‚ผ๋Š” โ€˜ํ•˜์ด ์›Œํ„ฐ๋งˆํฌ(high watermark)โ€™ ์ ‘๊ทผ๋ฒ•์€ ๋‹ค๋ฅธ ๊ด€ํ• ๊ถŒ์˜ ๊ทœ์ œ๊ฐ€ ๋’ค๋”ฐ๋ผ ๊ฐ•ํ™”๋  ๋•Œ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ๋Š” ๋น„์šฉ ๋ถ€๋‹ด๊ณผ ์žฌ์ž‘์—…์„ ์ค„์ด๋Š” ๋ฐ ๋„์›€์ด ๋  ์ˆ˜ ์žˆ๋‹ค.

4. ๋ฒ•๋ฌด ๋ฐ ๋ฆฌ์Šคํฌ ํŒ€์„ ์ดˆ๊ธฐ๋ถ€ํ„ฐ ๊พธ์ค€ํžˆ ์ฐธ์—ฌ์‹œ์ผœ๋ผ

AI ๊ด€๋ จ ๊ทœ์ œ๋Š” ๋„ˆ๋ฌด ๋น ๋ฅด๊ฒŒ ๋ณ€ํ™”ํ•ด ๋ฒ•๋ฌดํŒ€์ด ๋งˆ์ง€๋ง‰ ๋‹จ๊ณ„์—์„œ ์ ๊ฒ€ํ•˜๋Š” ์‹์œผ๋กœ๋Š” ๋”ฐ๋ผ๊ฐ€๊ธฐ ์–ด๋ ค์›Œ์ง€๊ณ  ์žˆ๋‹ค. AI ์„ค๊ณ„ ๋ฐ ๋ฐฐํฌ ์ดˆ๊ธฐ๋ถ€ํ„ฐ ๋ฒ•๋ฅ  ์ž๋ฌธ๊ณผ ๋ฆฌ์Šคํฌ ์ฑ…์ž„์ž๋ฅผ ์ฐธ์—ฌ์‹œํ‚ค๋ฉด, ์ƒˆ๋กญ๊ฒŒ ๋“ฑ์žฅํ•˜๋Š” ๊ทœ์ œ ์š”๊ตฌ๋ฅผ ์‚ฌํ›„๊ฐ€ ์•„๋‹Œ ์‚ฌ์ „ ๋Œ€์‘ ๊ด€์ ์—์„œ ๋ฐ˜์˜ํ•  ์ˆ˜ ์žˆ๋‹ค.

์ด์ œ๋Š” ๊ธฐ์ˆ , ๋ฒ•๋ฌด, ๋ฆฌ์Šคํฌ ํŒ€ ๊ฐ„์˜ ํ˜‘์—…์ด ์„ ํƒ์ด ์•„๋‹ˆ๋ผ ํ•„์ˆ˜๊ฐ€ ๋˜๊ณ  ์žˆ๋‹ค. ์ด๋Ÿฐ ๊ต์ฐจ ๊ธฐ๋ŠฅํŒ€์€ AI ํ™œ์šฉ ๋ฐฉ์‹๊ณผ ๋ฐ์ดํ„ฐ ์ถœ์ฒ˜, ๋ฒค๋” ์˜์กด์„ฑ์„ ํ‰๊ฐ€ํ•  ๋•Œ ๊ณตํ†ต๋œ ์–ธ์–ด๋ฅผ ๊ณต์œ ํ•ด์•ผ ํ•œ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ์‹ค์ œ ํ˜„์žฅ์—์„œ๋Š” โ€˜AIโ€™, โ€˜ํ•™์Šตโ€™, โ€˜๋ฐฐํฌโ€™์— ๋Œ€ํ•œ ์ •์˜๊ฐ€ ๋ถ€์„œ๋งˆ๋‹ค ๋‹ค๋ฅด๊ฒŒ ์‚ฌ์šฉ๋˜๋Š” ๊ฒฝ์šฐ๊ฐ€ ๋งŽ๋‹ค. ์ด๋Ÿฐ ์ธ์‹ ์ฐจ์ด๋Š” ๊ฑฐ๋ฒ„๋„Œ์Šค ์‚ฌ๊ฐ์ง€๋Œ€๋ฅผ ์ดˆ๋ž˜ํ•  ์ˆ˜ ์žˆ๋‹ค.

๋ชจ๋ธ ๊ฐœ๋ฐœ ๋‹จ๊ณ„๋ถ€ํ„ฐ ๋ฒ•๋ฅ ์  ๊ด€์ ์„ ํ†ตํ•ฉํ•˜๋ฉด, ๊ทœ์ œ ๋‹น๊ตญ์˜ ์งˆ์˜๊ฐ€ ๋ณธ๊ฒฉํ™”๋˜๊ธฐ ํ›จ์”ฌ ์ด์ „์— ๋ฌธ์„œํ™”, ์„ค๋ช… ๊ฐ€๋Šฅ์„ฑ, ์„œ๋“œํŒŒํ‹ฐ ๋ฆฌ์Šคํฌ์— ๋Œ€ํ•ด ๋ณด๋‹ค ํ•ฉ๋ฆฌ์ ์ด๊ณ  ์„ ์ œ์ ์ธ ํŒ๋‹จ์„ ๋‚ด๋ฆด ์ˆ˜ ์žˆ๋‹ค.

5. AI ๊ฑฐ๋ฒ„๋„Œ์Šค๋ฅผ ๊ณ ์ •๋œ ๊ทœ์น™์ด ์•„๋‹Œ โ€˜์ง„ํ™”ํ•˜๋Š” ์ฒด๊ณ„โ€™๋กœ ์šด์˜ํ•˜๋ผ

AI ๊ทœ์ œ ํ™˜๊ฒฝ์€ ๋‹น๋ถ„๊ฐ„์€ ๊ณ„์†ํ•ด์„œ ๋ณ€ํ™”ํ•  ์ „๋ง์ด๋‹ค. EU AI ๋ฒ•์•ˆ์ด ๊ตฌ์ฒดํ™”๋˜๋Š” ๋™์‹œ์— ๋ฏธ๊ตญ ๊ฐ ์ฃผ๊ฐ€ ์ž์ฒด์ ์ธ ๊ทœ์น™์„ ๋งˆ๋ จํ•˜๊ณ  ์žˆ๊ณ , ์บ๋‚˜๋‹ค์™€ ์ผ๋ณธ, ๋ธŒ๋ผ์งˆ ๋“ฑ๋„ ์„œ๋กœ ๋‹ค๋ฅธ ๊ทœ์ œ ํ”„๋ ˆ์ž„์›Œํฌ๋ฅผ ๋„์ž…ํ•˜๊ณ  ์žˆ๋‹ค.

์•ž์„  ๊ธฐ์—…์€ AI ๊ฑฐ๋ฒ„๋„Œ์Šค๋ฅผ ์ผํšŒ์„ฑ ํ”„๋กœ์ ํŠธ๋กœ ๋ณด์ง€ ์•Š๋Š”๋‹ค. ๋Œ€์‹  ์ด๋ฅผ ์ง€์†์ ์œผ๋กœ ํ™•์žฅ๋˜๊ณ  ์กฐ์ •๋˜๋Š” ์ƒํƒœ๊ณ„๋กœ ์ธ์‹ํ•œ๋‹ค. ๋ชจ๋‹ˆํ„ฐ๋ง๊ณผ ํ…Œ์ŠคํŠธ, ๋Œ€์‘์€ ์—ฐ๋ก€ ์ ๊ฒ€์ด ์•„๋‹ˆ๋ผ ์ผ์ƒ์ ์ธ ์šด์˜์˜ ์ผ๋ถ€๊ฐ€ ๋˜๊ณ , ๋ณ€ํ™”์— ๋Œ€ํ•œ ์ ์‘ ์†๋„ ์—ญ์‹œ ๊ธฐ์ˆ  ๋ฐœ์ „ ์†๋„์— ๋งž์ถฐ ์œ ์ง€๋œ๋‹ค. ์ปดํ”Œ๋ผ์ด์–ธ์Šค, ๊ธฐ์ˆ , ๋น„์ฆˆ๋‹ˆ์Šค ์กฐ์ง์ด ์ •๋ณด๋ฅผ ๊ณต์œ ํ•˜๋ฉฐ ํ†ต์ œ ์ฒด๊ณ„๊ฐ€ ๊ธฐ์ˆ ๊ณผ ํ•จ๊ป˜ ์ง„ํ™”ํ•˜๋„๋ก ๋งŒ๋“œ๋Š” ๊ฒƒ์ด ํ•ต์‹ฌ์ด๋‹ค.

AI ๊ทœ์ œ ์ค€์ˆ˜์˜ ํ•ต์‹ฌ

AI์˜ ์˜ํ–ฅ๋ ฅ์€ ์ „ ์„ธ๊ณ„์— ๋ฏธ์น˜์ง€๋งŒ, ๊ทธ๋กœ ์ธํ•œ ๋ฆฌ์Šคํฌ๋Š” ์ง€์—ญ ์ค‘์‹ฌ์ ์œผ๋กœ ๋‚˜ํƒ€๋‚œ๋‹ค. ๊ฐ๊ตญ ์ •๋ถ€๋Š” ์ œ๋Œ€๋กœ ๊ด€๋ฆฌํ•˜์ง€ ์•Š์œผ๋ฉด ๋น ๋ฅด๊ฒŒ ๋ฆฌ์Šคํฌ๊ฐ€ ํ™•๋Œ€๋˜๋Š” ๋ณ€์ˆ˜๋ฅผ ์ƒˆ๋กญ๊ฒŒ ์ถ”๊ฐ€ํ•˜๊ณ  ์žˆ๋‹ค. ๊ทœ์ œ ์ค€์ˆ˜๋ฅผ ๊ณ ์ •๋œ ์š”๊ตฌ ์‚ฌํ•ญ์œผ๋กœ ์ทจ๊ธ‰ํ•˜๋Š” ๊ฒƒ์€ ๋ฆฌ์Šคํฌ๋ฅผ ์ผํšŒ์„ฑ ๊ฐ์‚ฌ๋กœ ๋ฐ”๋ผ๋ณด๋Š” ๊ฒƒ๊ณผ ๋‹ค๋ฅด์ง€ ์•Š์œผ๋ฉฐ, ๋Š์ž„์—†์ด ์›€์ง์ด๋Š” ์š”์†Œ๋ฅผ ๋†“์น˜๋Š” ๊ฒƒ์ด๊ธฐ๋„ ํ•˜๋‹ค.

์•ž์œผ๋กœ์˜ AI ๊ทœ์ œ ํ™˜๊ฒฝ์—์„œ ์œ ๋ฆฌํ•œ ์œ„์น˜๋ฅผ ์ฐจ์ง€ํ•  ๊ธฐ์—…์€ AI ๊ฑฐ๋ฒ„๋„Œ์Šค๋ฅผ โ€˜๊ณ„์† ์ง„ํ–‰๋˜๋Š” ๋ฆฌ์Šคํฌ ๊ด€๋ฆฌโ€™๋กœ ์ธ์‹ํ•˜๋Š” ๊ณณ์ด๋‹ค. ์ดˆ๊ธฐ ๋‹จ๊ณ„์—์„œ ๋…ธ์ถœ ์š”์ธ์„ ์‹๋ณ„ํ•˜๊ณ , ๋ช…ํ™•ํ•œ ํ†ต์ œ๋ฅผ ํ†ตํ•ด ์ด๋ฅผ ์™„ํ™”ํ•˜๋ฉฐ, ์„ค๊ณ„์™€ ๋ฐฐํฌ ์ „ ๊ณผ์ •์— ํšŒ๋ณตํƒ„๋ ฅ์„ฑ์„ ๋‚ด์žฌํ™”ํ•˜๋Š” ์ „๋žต์ด ๊ทธ ํ•ต์‹ฌ์ด๋‹ค.
dl-ciokorea@foundryco.com

5 strategies for cross-jurisdictional AI risk management

8 January 2026 at 11:40

By the end of 2024, over 70 countries had already published or were drafting AI-specific regulations โ€” and their definitions of โ€œresponsible useโ€ can vary dramatically. Whatโ€™s encouraged innovation in one market may invite enforcement in another.

The result is a growing patchwork of laws that global organizations must navigate as they scale AI across borders.

For example, the current US governmentโ€™s AI strategy emphasizes the responsible adoption of AI across the economy, focusing on compliance with existing laws rather than creating new regulations; there is a preference for the organic development of standards and response to demonstrated harms rather than preemptive regulation. Meanwhile, the EU AI Act introduces sweeping, risk-based classifications and imposes strict obligations for providers, deployers and users. A system compliant in California could fail the EUโ€™s transparency tests; an algorithm trained in New York might trigger โ€œhigh-riskโ€ scrutiny in Brussels.

As AI systems, data and decisions travel across jurisdictions, complianceย must be built into governance โ€” from development to deployment โ€” to avoid regulatory blind spots that cross continents.

Here are five key strategies for cross-jurisdictional AI risk management.

1. Map your regulatory footprint

Global AI governance begins with visibility not just into where your tools are developed but also where their outputs and data flow. An AI model built in one country may be deployed, retrained or reused in another, without anyone realizing it has entered a new regulatory regime.

Organizations that operate across regions should maintain anย AI inventoryย that captures every use case, vendor relationship and dataset, tagged by geography and business function. This exercise not only clarifies which laws apply but also exposes dependencies and risks. For example, when a model trained on U.S. consumer data informs decisions about European customers.

Think of it as building a compliance map for AI, a living document that evolves as your technology stack and global footprint change.

2. Understand the divides that matter most

The most significant compliance risks stem from assuming AI is regulated the same way everywhere. Theย EU AI Actย classifies systems by risk level โ€” minimal, limited, high or unacceptable โ€” and imposes detailed requirements for โ€œhigh-riskโ€ applications, such as hiring, lending, healthcare and public services. Failing to comply can result in fines of up toย โ‚ฌ35 million or 7% of global annual revenue.

In contrast, theย USย does not have a single federal framework in place, so some individual states, such as California, Colorado and Illinois, have opted to implement policies focused on transparency, consumer privacy and bias mitigation. Federal agencies, including theย Equal Employment Opportunity Commission (EEOC)ย andย the Federal Trade Commission (FTC),ย are also using existing laws to police AI-related discrimination and deceptive practices.

For multinational organizations, this means one product may needย multiple compliance models. A generative AI assistant rolled out to a US sales team might be low risk under local law but classified as โ€œhigh-riskโ€ when used in Europeโ€™s customer-facing environment.

3. Ditch the one-size-fits-all policy

AI policies should establish universalย principlesย โ€” fairness, transparency, accountability โ€” but not identical controls. Overly rigid frameworks can hinder innovation in some regions while still missing key compliance requirements in others.

Instead, design governance that scales by intent and geography. Set global standards for ethical AI, then layer in regional guidance and implementation rules. This approach creates consistency without ignoring nuance: the flexibility to meet EU documentation demands, the agility to adapt to state laws and the clarity to operate confidently in markets that havenโ€™t yet defined their own AI regulations.

A โ€œhigh watermarkโ€ approach โ€” one that meets the strictest applicable standard โ€” can help avoid costly rework when other jurisdictions catch up.

4. Engage legal and risk teams early and often

AI compliance is moving too fast for legal to be a final checkpoint. Embedding counsel and risk leaders at the start of AI design and deployment helps ensure emerging requirements are anticipated, not retrofitted.

Cross-functional collaboration is now essential: Technology, legal and risk teams must share a common language for assessing AI use, data sources and vendor dependencies. Too often, definitions of โ€œAI,โ€ โ€œtraining,โ€ or โ€œdeploymentโ€ differ between departments โ€” a misalignment that creates governance blind spots.

By integrating legal perspectives into model development, organizations can make informed decisions about documentation, explainability and third-party exposure long before regulators start asking questions.

5. Treat AI governance as a living system

AI regulation wonโ€™t become stagnant anytime soon. As theย EU AI Actย takes shape, US states draft their own rules, and countries like Canada, Japan and Brazil introduce competing frameworks, compliance remains a moving target.

The organizations that stay ahead donโ€™t treat governance as a one-time project โ€” they treat it as an evolving ecosystem. Monitoring, testing and adaptation become part of everyday operations, not annual reviews. Cross-functional teams share intelligence between compliance, technology and business units so that controls evolve as quickly as the technology itself.

The bottom line

AIโ€™s reach is global, but its risks are intensely local. Each jurisdiction introduces new variables that can compound quickly if left unmanaged. Treating compliance as a static requirement is like treating risk as a one-time audit: It misses the moving parts.

The organizations best positioned for whatโ€™s next are those that seeย AI governance as risk management in motionย โ€” a strategy that identifies exposures early, mitigates them through clear controls and builds resilience into every stage of design and deployment.

This article is published as part of the Foundry Expert Contributor Network.
Want to join?

2026๋…„ CISO๊ฐ€ ๋ฐ˜๋“œ์‹œ ํ”ผํ•ด์•ผ ํ•  8๊ฐ€์ง€ ๋ณด์•ˆ ์‹ค์ˆ˜

8 January 2026 at 02:40

์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋ฆฌ๋”๋Š” ์กฐ์ง์˜ ์•ˆ์ „์„ ์ง€ํ‚ค๊ธฐ ์œ„ํ•ด ๊ณ ๋ คํ•ด์•ผ ํ•  ์š”์†Œ๊ฐ€ ๋งค์šฐ ๋งŽ๋‹ค. ๋‹ค๋งŒ ๊ทธ์ค‘์—๋Š” ๋‹ค๋ฅธ ์‚ฌ์•ˆ๋ณด๋‹ค ๋” ๋‘๋“œ๋Ÿฌ์ง€๊ฒŒ ์ค‘์š”ํ•˜๊ฑฐ๋‚˜, ๋ฐ˜๋Œ€๋กœ ์•„์ง ์ถฉ๋ถ„ํžˆ ์ฃผ๋ชฉ๋ฐ›์ง€ ๋ชปํ•œ ๊ณผ์ œ๋„ ์กด์žฌํ•œ๋‹ค.

์ƒˆํ•ด๋ฅผ ๋งž์•„ 2026๋…„ CISO๊ฐ€ ๊ฒฐ์ฝ” ์†Œํ™€ํžˆ ํ•ด์„œ๋Š” ์•ˆ ๋  ํ•ต์‹ฌ ์š”์†Œ 6๊ฐœ๋ฅผ ์งš์–ด๋ณด์•˜๋‹ค.

AI ์—์ด์ „ํŠธ ํ™•์‚ฐ ์† ์•„์ด๋ดํ‹ฐํ‹ฐ ํ†ต์ œ ์†Œํ™€

๊ธฐ์—…์ด ์ž๋™ํ™”์™€ ํšจ์œจ์„ฑ์„ ํ™œ์šฉํ•˜๊ธฐ ์œ„ํ•ด AI ์—์ด์ „ํŠธ ๋„์ž…์„ ๋ณธ๊ฒฉํ™”ํ•˜๋ฉด์„œ, ๊ด€๋ จ ๊ธฐ์ˆ ์€ ๋น ๋ฅธ ์†๋„๋กœ ํ™•๋Œ€๋˜๊ณ  ์žˆ๋‹ค. ๊ทธ๋žœ๋“œ๋ทฐ๋ฆฌ์„œ์น˜์— ๋”ฐ๋ฅด๋ฉด ์ „ ์„ธ๊ณ„ AI ์—์ด์ „ํŠธ ์‹œ์žฅ ๊ทœ๋ชจ๋Š” 2024๋…„ 54์–ต ๋‹ฌ๋Ÿฌ๋กœ ์ถ”์‚ฐ๋์œผ๋ฉฐ, 2030๋…„์—๋Š” 503์–ต 1,000๋งŒ ๋‹ฌ๋Ÿฌ๊นŒ์ง€ ์„ฑ์žฅํ•  ๊ฒƒ์œผ๋กœ ์ „๋ง๋œ๋‹ค.

AI ์—์ด์ „ํŠธ ํ™œ์šฉ์ด ๋Š˜์–ด๋‚˜๋ฉด์„œ ๊ธฐ์—…์€ ์ƒˆ๋กœ์šด ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๊ณผ์ œ์— ์ง๋ฉดํ•˜๊ณ  ์žˆ๋‹ค. ํŠนํžˆ ์•„์ด๋ดํ‹ฐํ‹ฐ ํ†ต์ œ ์ธก๋ฉด์—์„œ์˜ ๋ถ€๋‹ด์ด ํฌ๋‹ค. ์•„์ด๋ดํ‹ฐํ‹ฐ ์Šคํ‘ธํ•‘์ด๋‚˜ ๊ณผ๋„ํ•œ ๊ถŒํ•œ ๋ถ€์—ฌ๊ฐ€ ๋Œ€ํ‘œ์ ์ธ ์œ„ํ˜‘์ด๋‹ค. ์‚ฌ์ด๋ฒ„ ๋ฒ”์ฃ„์ž๋Š” ํ”„๋กฌํ”„ํŠธ ์ธ์ ์…˜์ด๋‚˜ ์•…์„ฑ ๋ช…๋ น์„ ํ™œ์šฉํ•ด ์—์ด์ „ํŠธ๋ฅผ ์•…์šฉํ•˜๊ณ , ๋ณด์•ˆ ํ†ต์ œ๋ฅผ ์šฐํšŒํ•ด ์‹œ์Šคํ…œ๊ณผ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์— ๋ฌด๋‹จ ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋‹ค.

PwC์˜ ์‚ฌ์ด๋ฒ„ยท๋ฐ์ดํ„ฐยท๊ธฐ์ˆ  ๋ฆฌ์Šคํฌ ๋ถ€๋ฌธ ๋ถ€์ฑ…์ž„์ž์ธ ๋ชจ๊ฑด ์•„๋‹ด์Šคํ‚ค๋Š” AI ์—์ด์ „ํŠธ๋ฅผ ํฌํ•จํ•œ ์•„์ด๋ดํ‹ฐํ‹ฐ๋ฅผ ์ œ๋Œ€๋กœ ๊ด€๋ฆฌํ•˜๋ฉด, ๋ˆ„๊ฐ€ ๋ฌด์—‡์„ ํ•  ์ˆ˜ ์žˆ๋Š”์ง€๋ฅผ ๊ธฐ๊ณ„ ์†๋„๋กœ ํ†ต์ œํ•  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

์•„๋‹ด์Šคํ‚ค๋Š” ๊ณต๊ฒฉ์ž๊ฐ€ ์ ์  ๋” ์นจ์ž…์ด ์•„๋‹Œ ๋กœ๊ทธ์ธ ๋ฐฉ์‹์œผ๋กœ ์ ‘๊ทผํ•˜๊ณ  ์žˆ์œผ๋ฉฐ, AI ์—์ด์ „ํŠธ๊ฐ€ ์‹ค์ œ๋กœ ์‹œ์Šคํ…œ๊ณผ ๋ฐ์ดํ„ฐ๋ฅผ ๋ณ€๊ฒฝํ•˜๋Š” ๋‹จ๊ณ„์— ์ด๋ฅด๋ €๋‹ค๊ณ  ๋ถ„์„ํ–ˆ๋‹ค. ๊ทธ๋Š” ๋ฆฌ๋”๊ฐ€ ๋†“์ณ์„œ๋Š” ์•ˆ ๋  ํ•ต์‹ฌ์œผ๋กœ ๋ชจ๋“  ์‚ฌ๋žŒ, ์›Œํฌ๋กœ๋“œ, ์—์ด์ „ํŠธ๋ฅผ ๊ด€๋ฆฌ ๋Œ€์ƒ ์•„์ด๋ดํ‹ฐํ‹ฐ๋กœ ์ทจ๊ธ‰ํ•˜๋Š” ์ ์„ ๊ผฝ์•˜๋‹ค. ๊ฐ๊ฐ์— ๊ฐœ๋ณ„ ๊ณ„์ •์„ ๋ถ€์—ฌํ•˜๊ณ , ํ”ผ์‹ฑ์— ๊ฐ•ํ•œ ๋‹ค์ค‘์š”์†Œ์ธ์ฆ์„ ์ ์šฉํ•˜๋ฉฐ, ํ•„์š”ํ•œ ์ตœ์†Œ ๊ถŒํ•œ๋งŒ ํ•„์š”ํ•œ ๊ธฐ๊ฐ„ ๋™์•ˆ ๋ถ€์—ฌํ•˜๊ณ , ๋น„๋ฐ€๋ฒˆํ˜ธ๋‚˜ ํ‚ค๋ฅผ ์ž๋™์œผ๋กœ ๋ณ€๊ฒฝํ•˜๋Š” ์ฒด๊ณ„๋ฅผ ๊ฐ–์ถฐ์•ผ ํ•œ๋‹ค๋Š” ์„ค๋ช…์ด๋‹ค. ์•„์šธ๋Ÿฌ ๋น„์ •์ƒ์ ์ธ ๊ถŒํ•œ ๋ณ€๊ฒฝ์ด๋‚˜ ์„ธ์…˜ ํƒˆ์ทจ ์—ฌ๋ถ€๋ฅผ ์ง€์†์ ์œผ๋กœ ๋ชจ๋‹ˆํ„ฐ๋งํ•ด์•ผ ํ•œ๋‹ค๊ณ  ๊ฐ•์กฐํ–ˆ๋‹ค.

์•„๋‹ด์Šคํ‚ค๋Š” ๊ธฐ์—…์ด ํ†ต์ œ๋ ฅ์„ ์žƒ์ง€ ์•Š์œผ๋ฉด์„œ๋„ ๋ฏผ์ฒฉํ•˜๊ฒŒ ๋Œ€์‘ํ•˜๋ ค๋ฉด, ์ผ์ƒ์ ์ธ ์—…๋ฌด ํ๋ฆ„์— AI ์—์ด์ „ํŠธ ๊ฑฐ๋ฒ„๋„Œ์Šค๋ฅผ ๋‚ด์žฌํ™”ํ•ด์•ผ ํ•œ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ๊ด€๋ฆฌ์ž์—๊ฒŒ ํ•˜๋“œ์›จ์–ด ๊ธฐ๋ฐ˜ ๋‹ค์ค‘์š”์†Œ์ธ์ฆ์„ ์˜๋ฌดํ™”ํ•˜๊ณ , ์ƒ์Šน๋œ ๊ถŒํ•œ์€ ๊ธฐ๋ณธ์ ์œผ๋กœ ๋งŒ๋ฃŒ๋˜๋„๋ก ์„ค์ •ํ•˜๋ฉฐ, ์‹ ๊ทœ ์—์ด์ „ํŠธ๋Š” ๊ฐ๊ฐ์˜ ์ •์ฑ…์„ ๊ฐ€์ง„ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์œผ๋กœ ๋“ฑ๋กํ•˜๋Š” ๋ฐฉ์‹์ด ํ•„์š”ํ•˜๋‹ค๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค.

๊ธ€๋กœ๋ฒŒ ๊ธฐ์ˆ  ๋ฆฌ์„œ์น˜ยท์ž๋ฌธ ๊ธฐ์—… ISG์˜ ๋””๋ ‰ํ„ฐ ์ œ์ด์Šจ ์Šคํƒ€๋”ฉ์€ AI ์—์ด์ „ํŠธ์™€ AI ํ”Œ๋žซํผ์— ๋Œ€ํ•œ ์•„์ด๋ดํ‹ฐํ‹ฐ ๋ฐ ์ ‘๊ทผ ํ†ต์ œ๊ฐ€ CISO์—๊ฒŒ ๊ฐ€์žฅ ์ค‘์š”ํ•œ ์šฐ๋ ค ์˜์—ญ ์ค‘ ํ•˜๋‚˜๋ผ๊ณ  ํ‰๊ฐ€ํ–ˆ๋‹ค. ๊ทธ๋Š” ํ˜„์žฌ AI ๊ด€๋ จ ๊ถŒํ•œ๊ณผ ์ ‘๊ทผ ๊ถŒํ•œ์€ ๋งŽ์€ ์˜์—ญ์—์„œ ์—ฌ์ „ํžˆ ๋ธ”๋ž™๋ฐ•์Šค์— ๊ฐ€๊น๋‹ค๋ฉฐ, ํ–ฅํ›„ ๋ช‡ ๋…„๊ฐ„ ์ด ๋ถ„์•ผ์—์„œ ํˆฌ๋ช…์„ฑ๊ณผ ํ†ต์ œ๋ฅผ ๊ฐ•ํ™”ํ•˜๊ธฐ ์œ„ํ•œ ๋„๊ตฌ์™€ ๋ฐฉ๋ฒ•์„ ๋„์ž…ํ•˜๋ ค๋Š” ์›€์ง์ž„์ด ๋ณธ๊ฒฉํ™”๋  ๊ฒƒ์ด๋ผ๊ณ  ์ „๋งํ–ˆ๋‹ค.

๊ณต๊ธ‰๋ง ๋ฆฌ์Šคํฌ ๊ด€๋ฆฌ ๋ฏธํก

๋””์ง€ํ„ธ ๋น„์ฆˆ๋‹ˆ์Šค ํ™•์‚ฐ๊ณผ ๊ธ€๋กœ๋ฒŒ ์‹œ์žฅ์—์„œ์˜ ๊ณต๊ธ‰๋ง ๋ณต์žก์„ฑ ์ฆ๊ฐ€๋Š” ๊ธฐ์—…์˜ ๊ณต๊ธ‰๋ง์„ ์ฃผ์š” ์œ„ํ—˜ ์˜์—ญ์œผ๋กœ ๋งŒ๋“ค๊ณ  ์žˆ๋‹ค. ๊ณต๊ธ‰๋ง์€ ์ด๋ฏธ ๋งŽ์€ ๊ธฐ์—…์—์„œ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋ฆฌ์Šคํฌ๊ฐ€ ๋น ๋ฅด๊ฒŒ ์ปค์ง€๊ณ  ์žˆ๋Š” ๋ถ„์•ผ๋‹ค.

์ด ๋ฌธ์ œ๋Š” ํŠนํžˆ ์ œ์กฐ, ์œ ํ†ต, ๋ฌผ๋ฅ˜ ์‚ฐ์—…์—์„œ ๋”์šฑ ์ค‘์š”ํ•˜๋‹ค. ๊ธˆ์† ์ œํ’ˆ๊ณผ ๋ถ€ํ’ˆ์„ ๊ณต๊ธ‰ํ•˜๋Š” AMFT์˜ CTO ๊ทธ๋ ‰ ์ ค๋กœ๋Š” 2026๋…„์— ๋ณต์žกํ•œ ๊ณต๊ธ‰๋ง๊ณผ ์ œ์กฐ ํ™˜๊ฒฝ์—์„œ์˜ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ์„ ๊ฐ„๊ณผํ•˜๋Š” CISO๋Š” ์น˜๋ช…์ ์ธ ๊ฒฐ๊ณผ์— ์ง๋ฉดํ•  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

์ ค๋กœ๋Š” ํ˜„๋Œ€ ์ œ์กฐ ํ™˜๊ฒฝ์ด ๋” ์ด์ƒ ๋‹จ์ผ ๊ณต์žฅ์— ๊ตญํ•œ๋˜์ง€ ์•Š๋Š”๋‹ค๊ณ  ๋ถ„์„ํ–ˆ๋‹ค. ์ƒํ˜ธ ์—ฐ๊ฒฐ๋œ ๊ณต๊ธ‰์—…์ฒด, ์‚ฌ๋ฌผ์ธํ„ฐ๋„ท ๊ธฐ๋ฐ˜ ์„ค๋น„, ํด๋ผ์šฐ๋“œ ์ค‘์‹ฌ ์ƒ์‚ฐ ์‹œ์Šคํ…œ์ด ์–ฝํžŒ ๊ตฌ์กฐ๋กœ ์ง„ํ™”ํ•˜๋ฉด์„œ, ํ•˜๋‚˜์˜ ์ทจ์•ฝํ•œ ์—ฐ๊ฒฐ๊ณ ๋ฆฌ๋งŒ์œผ๋กœ๋„ ์ „์ฒด ์šด์˜์ด ๋งˆ๋น„๋  ์ˆ˜ ์žˆ๋Š” ๊ด‘๋ฒ”์œ„ํ•œ ๊ณต๊ฒฉ ํ‘œ๋ฉด์ด ํ˜•์„ฑ๋๋‹ค๋Š” ์„ค๋ช…์ด๋‹ค.

์ตœ๊ทผ ๋ฐœ์ƒํ•œ ์‚ฌ๊ฑด์€ ์ด๋Ÿฌํ•œ ์œ„ํ—˜์„ ๋ถ„๋ช…ํžˆ ๋ณด์—ฌ์ค€๋‹ค. ์ ค๋กœ์— ๋”ฐ๋ฅด๋ฉด 2025๋…„ 9์›” ์žฌ๊ทœ์–ด ๋žœ๋“œ๋กœ๋ฒ„๋Š” ๊ณต๊ธ‰๋ง์„ ๊ฒจ๋ƒฅํ•œ ์‚ฌ์ด๋ฒ„ ๊ณต๊ฒฉ์„ ๋ฐ›์•„ ์˜๊ตญ, ์Šฌ๋กœ๋ฐ”ํ‚ค์•„, ์ธ๋„, ๋ธŒ๋ผ์งˆ ์ „์—ญ์—์„œ ์ˆ˜์ฃผ ๋™์•ˆ ์ƒ์‚ฐ์ด ์ค‘๋‹จ๋๊ณ , ์ถ”์ • ํ”ผํ•ด์•ก์€ 25์–ต ๋‹ฌ๋Ÿฌ์— ๋‹ฌํ–ˆ๋‹ค. ๊ทธ๋Š” ์ด ์นจํ•ด ์‚ฌ๊ณ ๊ฐ€ ์ˆ˜๋ฐฑ ๊ฐœ ํ˜‘๋ ฅ์‚ฌ๋กœ ํ™•์‚ฐ๋˜๋ฉฐ ๊ตฌ์กฐ์กฐ์ •๊ณผ ํŒŒ์‚ฐ์œผ๋กœ ์ด์–ด์กŒ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ์ด๋Š” ๋‹จ์ˆœํ•œ IT ์žฅ์• ๊ฐ€ ์•„๋‹ˆ๋ผ, ๊ธ€๋กœ๋ฒŒ ์ œ์กฐ์—…์ด ์–ผ๋งˆ๋‚˜ ๊นŠ์ด ์ƒํ˜ธ ์˜์กด์ ์ธ์ง€๋ฅผ ๋“œ๋Ÿฌ๋‚ธ ์šด์˜ ์œ„๊ธฐ์˜€๋‹ค๊ณ  ํ‰๊ฐ€ํ–ˆ๋‹ค.

๊ณต๊ฒฉ์ž๋Š” ๋กœ๋ด‡, ์กฐ๋ฆฝ ๋ผ์ธ, ํ’ˆ์งˆ ๊ฒ€์‚ฌ ๋“ฑ์„ ์ œ์–ดํ•˜๋Š” ์šด์˜๊ธฐ์ˆ (OT) ์‹œ์Šคํ…œ์„ ์ ์  ๋” ๋งŽ์ด ๋…ธ๋ฆฌ๊ณ  ์žˆ๋‹ค. ์ƒ์‚ฐ์„ ๋ฉˆ์ถ”๊ฒŒ ํ•˜๋ฉด ๊ธฐ์—…์ด ์‹ ์†ํ•˜๊ฒŒ ๋ชธ๊ฐ’์„ ์ง€๋ถˆํ•  ์ˆ˜๋ฐ–์— ์—†๋‹ค๋Š” ์ ์„ ์•…์šฉํ•˜๊ณ  ์žˆ๋‹ค๋Š” ์„ค๋ช…์ด๋‹ค.

์ ค๋กœ๋Š” ์žฌ๋ฌด์  ์†์‹ค์„ ๋„˜์–ด ์ง€์‹์žฌ์‚ฐ๊ถŒ ํƒˆ์ทจ, ๊ทœ์ œ ์ฒ˜๋ฒŒ, ๊ตญ๊ฐ€ ์•ˆ๋ณด ๋ฌธ์ œ๊นŒ์ง€ ์œ„ํ—˜์ด ํ™•๋Œ€๋œ๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค. ๊ทธ๋Š” CISO์—๊ฒŒ ์ฃผ๋Š” ๊ตํ›ˆ์€ ๋ถ„๋ช…ํ•˜๋‹ค๋ฉฐ, ์ „ํ†ต์ ์ธ ๊ฒฝ๊ณ„ ๊ธฐ๋ฐ˜ ๋ณด์•ˆ์€ ์ด๋ฏธ ํ•œ๊ณ„์— ๋„๋‹ฌํ–ˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๋ณต์žกํ•œ ๊ณต๊ธ‰๋ง์„ ๋ณดํ˜ธํ•˜๋ ค๋ฉด IT์™€ OT ์ „๋ฐ˜์— ๊ฑธ์นœ ์ œ๋กœ ํŠธ๋Ÿฌ์ŠคํŠธ ์•„ํ‚คํ…์ฒ˜ ์ ์šฉ, ํŽŒ์›จ์–ด์™€ ์†Œํ”„ํŠธ์›จ์–ด ์—…๋ฐ์ดํŠธ๋ฅผ ํฌํ•จํ•œ ์ œ3์ž ๋ฆฌ์Šคํฌ์˜ ์ง€์†์  ๋ชจ๋‹ˆํ„ฐ๋ง, ํ•ต์‹ฌ ์‹œ์Šคํ…œ์„ ๊ฒฉ๋ฆฌํ•˜๊ธฐ ์œ„ํ•œ ์‹ ์†ํ•œ ํŒจ์น˜์™€ ์„ธ๋ถ„ํ™”, ๊ณต๊ธ‰์—…์ฒด์™€ ๊ณ„์•ฝ์ž๋ฅผ ํฌํ•จํ•œ ์‚ฌ๊ณ  ๋Œ€์‘ ํ›ˆ๋ จ์ด ํ•„์š”ํ•˜๋‹ค๊ณ  ๊ฐ•์กฐํ–ˆ๋‹ค.

์ง€์ •ํ•™์  ๊ธด์žฅ์— ๋Œ€ํ•œ ๊ณผ์†Œํ‰๊ฐ€

CISO๊ฐ€ ์กฐ์ง์„ ์™ธ๋ถ€์™€ ๋‚ด๋ถ€ ์œ„ํ˜‘์œผ๋กœ๋ถ€ํ„ฐ ๋ณดํ˜ธํ•˜๋Š” ๋ฐ ์ง€๋‚˜์น˜๊ฒŒ ์ง‘์ค‘ํ•œ ๋‚˜๋จธ์ง€ ์ง€์ •ํ•™์  ๊ธด์žฅ์„ ๋†“์น˜๊ธฐ ์‰ฝ๋‹ค. ํ˜น์€ ์ด๋Ÿฌํ•œ ์š”์†Œ๋ฅผ ์ž์‚ฌ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ์ด์Šˆ์™€ ์ง์ ‘์ ์ธ ๊ด€๋ จ์ด ์—†๋‹ค๊ณ  ํŒ๋‹จํ•ด ์ค‘์š”์„ฑ์„ ๋‚ฎ๊ฒŒ ํ‰๊ฐ€ํ•  ์ˆ˜๋„ ์žˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ์–ด๋А ์ชฝ์ด๋“  ์ด๋Š” ์ค‘๋Œ€ํ•œ ํŒ๋‹จ ์˜ค๋ฅ˜๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค.

๊ธ€๋กœ๋ฒŒ ๊ธฐ์ˆ  ๋ฆฌ์„œ์น˜ยท์ž๋ฌธ ๊ธฐ์—… ISG์˜ ๋””๋ ‰ํ„ฐ ์ œ์ด์Šจ ์Šคํƒ€๋”ฉ์€ ์กฐ์ง์˜ ์‚ฌ์ด๋ฒ„ ํšŒ๋ณตํƒ„๋ ฅ์„ฑ ๊ณ„ํš์— ์‹œ์Šคํ…œ์  ์‹œ๋‚˜๋ฆฌ์˜ค๋ฅผ ๋ฐ˜์˜ํ•˜๋Š” ๊ฒƒ์ด ๋งค์šฐ ์ค‘์š”ํ•˜๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ์—ฌ๊ธฐ์—๋Š” ๋น„์ฆˆ๋‹ˆ์Šค์— ์˜ํ–ฅ์„ ๋ฏธ์น  ์ˆ˜ ์žˆ๋Š” ๊ธ€๋กœ๋ฒŒ ์ •์„ธ ๋ณ€ํ™”์™€ ์ง€์ •ํ•™์  ๊ฐˆ๋“ฑ๋„ ๋ฐ˜๋“œ์‹œ ํฌํ•จ๋ผ์•ผ ํ•œ๋‹ค๋Š” ๊ฒƒ์ด๋‹ค.

์Šคํƒ€๋”ฉ์€ ๊ธฐ์—…์˜ ๋น„์ฆˆ๋‹ˆ์Šค์™€ ์ž์‚ฐ์— ์˜ํ–ฅ์„ ์ค„ ์ˆ˜ ์žˆ๋Š” ์นจํ•ด ์ง€ํ‘œ๋ฅผ ์ œ๊ณตํ•˜๊ธฐ ์œ„ํ•ด ์‚ฐ์—…๋ณ„ ๋งž์ถคํ˜• ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค์— ๋Œ€ํ•œ ์š”๊ตฌ๋„ ์ปค์ง€๊ณ  ์žˆ๋‹ค๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค. ๊ทธ๋Š” ์ด๋Ÿฌํ•œ ์œ„ํ˜‘ ๊ฐ€์šด๋ฐ ์ผ๋ถ€๋Š” ์•…์˜์ ์ธ ๊ตญ๊ฐ€ ํ–‰์œ„์ž๋กœ๋ถ€ํ„ฐ ๋น„๋กฏ๋˜๋Š” ๊ณ ๋„ ์ง€์† ๊ณต๊ฒฉ๊ณผ ์—ฐ๊ด€๋  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

IT ์ปจ์„คํŒ… ๊ธฐ์—… ๋…ธ์Šค๋„์–ด์˜ ์ตœ๊ณ ์ƒ์—…์ฑ…์ž„์ž(Chief Cmmercial Officer) AJ ํ†ฐ์Šจ์€ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ๊ณผ ์ง€์ •ํ•™์˜ ๊ฒฐํ•ฉ์ด ์ด๋ฏธ ํ˜„์‹ค๋กœ ์ž๋ฆฌ ์žก์•˜๋‹ค๊ณ  ํ‰๊ฐ€ํ–ˆ๋‹ค. ๊ทธ๋Š” ๊ตญ๊ฐ€ ํ–‰์œ„์ž๊ฐ€ ์ฃผ๋„ํ•˜๋Š” ์‚ฌ์ด๋ฒ„ ๊ณต๊ฒฉ์ด ํ•ต์‹ฌ ์ธํ”„๋ผ์™€ ๊ธ€๋กœ๋ฒŒ ๊ณต๊ธ‰๋ง์„ ๊ฒจ๋ƒฅํ•œ ๋” ํฐ ๋ถ„์Ÿ์˜ ์ผ๋ถ€๋ผ๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ์ง€์ •ํ•™์  ์ธํ…”๋ฆฌ์ „์Šค๋ฅผ ์œ„ํ˜‘ ๋ชจ๋ธ๋ง์— ๋ฐ˜์˜ํ•˜์ง€ ์•Š์œผ๋ฉด, ์กฐ์ง์€ ํŒŒ๊ธ‰๋ ฅ์ด ํฐ ๊ตญ๊ฐ€ ์ง€์› ์‚ฌ์ด๋ฒ„ ๊ณต๊ฒฉ์— ๊ณผ๋„ํ•˜๊ฒŒ ๋…ธ์ถœ๋  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค.

์•„์šธ๋Ÿฌ ํ†ฐ์Šจ์€ ์˜๋„์น˜ ์•Š๊ฒŒ ์ด๋Ÿฌํ•œ ์ง€์ •ํ•™์  ์‚ฌ๊ฑด์— ์—ฐ๋ฃจ๋  ๊ฒฝ์šฐ, ๊ทœ์ œ ์ธก๋ฉด๊ณผ ๊ธฐ์—… ํ‰ํŒ ์ธก๋ฉด์—์„œ ๋ชจ๋‘ ์‹ฌ๊ฐํ•œ ํ›„๊ณผ๋ฅผ ์ดˆ๋ž˜ํ•  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

์กฐ์ง์˜ ํด๋ผ์šฐ๋“œ ํ™œ์šฉ ํ†ต์ œ ๋ถ€์žฌ

ํด๋ผ์šฐ๋“œ ์„œ๋น„์Šค ์‚ฌ์šฉ์ด ๊ณ„์† ํ™•๋Œ€๋˜๋ฉด์„œ, ์ด์— ์ˆ˜๋ฐ˜๋˜๋Š” ๋ณด์•ˆ๊ณผ ๊ฐœ์ธ์ •๋ณด ๋ณดํ˜ธ ์œ„ํ—˜๋„ ํ•จ๊ป˜ ์ปค์ง€๊ณ  ์žˆ๋‹ค. CISO๊ฐ€ ์ด ์˜์—ญ์„ ์†Œํ™€ํžˆ ํ•  ๊ฒฝ์šฐ ์กฐ์ง์€ ๊ฐ์ข… ์‚ฌ์ด๋ฒ„ ๊ณต๊ฒฉ์— ๊ทธ๋Œ€๋กœ ๋…ธ์ถœ๋  ์ˆ˜ ์žˆ๋‹ค.

๊ธ€๋กœ๋ฒŒ ๊ธฐ์ˆ  ๋ฆฌ์„œ์น˜ยท์ž๋ฌธ ๊ธฐ์—… ISG์˜ ๋””๋ ‰ํ„ฐ ์ œ์ด์Šจ ์Šคํƒ€๋”ฉ์€ ํด๋ผ์šฐ๋“œ ์„œ๋น„์Šค์™€ AI ๋„๊ตฌ๊ฐ€ ์„œ๋กœ ๊ธด๋ฐ€ํ•˜๊ฒŒ ๊ฒฐํ•ฉ๋ผ ํ™œ์šฉ๋˜๋Š” ๊ฒฝ์šฐ๊ฐ€ ๋งŽ๋‹ค๋Š” ์ ์—์„œ ์ด ๋ฌธ์ œ๊ฐ€ ๋”์šฑ ์ค‘์š”ํ•˜๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๊ทธ๋Š” ์—ญํ• ๊ณผ ์ฑ…์ž„์— ์—ฐ๊ณ„๋œ ์ ์ ˆํ•˜๊ณ  ํ˜„๋Œ€์ ์ธ ๋ณด์•ˆ ์ธ์‹ ๊ต์œก์ด ํ•ต์‹ฌ์ด๋ฉฐ, ํ˜„์žฌ ์—…๋ฌด ํ™˜๊ฒฝ ์ „๋ฐ˜์— ํ™•์‚ฐ๋œ AI ๋„๊ตฌ์™€ ๊ธฐ์ˆ  ์‚ฌ์šฉ๊นŒ์ง€ ๊ณ ๋ คํ•ด์•ผ ํ•œ๋‹ค๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค.

์Šคํƒ€๋”ฉ์€ ํด๋ผ์šฐ๋“œ ๊ด€๋ฆฌ์ž์™€ ์—”์ง€๋‹ˆ์–ด๋ฅผ ๋Œ€์ƒ์œผ๋กœ ํ•œ ์˜ฌ๋ฐ”๋ฅธ ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ๊ด€ํ–‰๊ณผ ์ ˆ์ฐจ์— ๋Œ€ํ•œ ๊ต์œก์ด ๋ถ€์กฑํ•œ ๊ฒฝ์šฐ๊ฐ€ ๋งŽ๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค. ๋˜ํ•œ ํด๋ผ์šฐ๋“œ ํŒ€ ๋‹ค์ˆ˜๊ฐ€ ๋ณด์•ˆ ๋„๊ตฌ ๋„์ž…๊ณผ ํ™œ์šฉ ์ธก๋ฉด์—์„œ ๊ฐœ์„ ์„ ์‹œ๋„ํ•˜๊ณ  ์žˆ์ง€๋งŒ, ์‹ค์ œ๋กœ๋Š” ๋งŽ์€ ์กฐ์ง์ด ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ์„ ์œ„ํ•ด ํˆฌ์žํ•œ ๋„๊ตฌ๋ฅผ ์ถฉ๋ถ„ํžˆ ํ™œ์šฉํ•˜์ง€ ๋ชปํ•˜๊ณ  ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

IT ์ปจ์„คํŒ… ๊ธฐ์—… ๋…ธ์Šค๋„์–ด์˜ ์ตœ๊ณ ์ƒ์—…์ฑ…์ž„์ž AJ ํ†ฐ์Šจ์€ ๋ฉ€ํ‹ฐํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ ํ™•์‚ฐ๊ณผ ํ•จ๊ป˜ ์ „ํ†ต์ ์ธ ๋ณด์•ˆ ๊ฒฝ๊ณ„๋Š” ์ด๋ฏธ ์‚ฌ๋ผ์กŒ๋‹ค๊ณ  ๋ถ„์„ํ–ˆ๋‹ค. ๊ทธ๋Š” ์‚ฌํ›„ ๋Œ€์‘ ์ค‘์‹ฌ์˜ ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ์— ์˜์กดํ•˜๋Š” ์กฐ์ง์€ ์ •๊ตํ•œ ์œ„ํ˜‘์„ ๋†“์น˜๊ธฐ ์‰ฝ๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค.

ํ†ฐ์Šจ์€ ์‚ฌ์ „ ๋Œ€์‘ํ˜• ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ํƒœ์„ธ ๊ด€๋ฆฌ(CSPM)์™€ ๋ช…ํ™•ํ•œ ์‚ฌ์šฉ์ž ๋ณด์•ˆ ๊ฐ€์ด๋“œ๋ผ์ธ์ด ๋น„์šฉ์ด ํฐ ์นจํ•ด ์‚ฌ๊ณ ์™€ ์šด์˜ ์ค‘๋‹จ์„ ์˜ˆ๋ฐฉํ•˜๋Š” ๋ฐ ํ•ต์‹ฌ์ ์ธ ๋‹จ๊ณ„๋ผ๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๋ณต์žกํ•œ ํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ์—์„œ ์ธ์  ์˜ค๋ฅ˜๋กœ ์ธํ•œ ์œ„ํ—˜์„ ์ตœ์†Œํ™”ํ•˜๋ ค๋ฉด, ์•ˆ์ „ํ•œ ์‚ฌ์šฉ์ž ํ–‰๋™์„ ์ง€์†์ ์œผ๋กœ ์กฐ์ง ๋ฌธํ™”์— ๋‚ด์žฌํ™”ํ•ด์•ผ ํ•œ๋‹ค๊ณ  ๊ฐ•์กฐํ–ˆ๋‹ค.

๊ฐ•ํ™”๋˜๋Š” ๊ทœ์ œ ํ™˜๊ฒฝ์— ๋Œ€ํ•œ ๋Œ€์‘ ๋ถ€์กฑ

๊ธˆ์œต ์„œ๋น„์Šค๋‚˜ ํ—ฌ์Šค์ผ€์–ด์ฒ˜๋Ÿผ ๊ทœ์ œ๊ฐ€ ์—„๊ฒฉํ•œ ์‚ฐ์—…์— ์†ํ•œ ์ผ๋ถ€ ๊ธฐ์—…์€ ์˜ค๋ž˜์ „๋ถ€ํ„ฐ ๊ธˆ์œต์ •๋ณด๋ณดํ˜ธ๋ฒ•(GLBA)์ด๋‚˜ ์˜๋ฃŒ์ •๋ณด๋ณดํ˜ธ๋ฒ•(HIPAA)๊ณผ ๊ฐ™์€ ๋ฐ์ดํ„ฐ ๋ณด์•ˆยทํ”„๋ผ์ด๋ฒ„์‹œ ๊ทœ์ œ๋ฅผ ์ค€์ˆ˜ํ•ด์•ผ ํ–ˆ๋‹ค.

๊ทธ๋Ÿฌ๋‚˜ ์ตœ๊ทผ์—๋Š” ๊ฑฐ์˜ ๋ชจ๋“  ์‚ฐ์—…์ด ์ „ ์„ธ๊ณ„์ ์œผ๋กœ ์ฆ๊ฐ€ํ•˜๋Š” ๋ฐ์ดํ„ฐ ํ”„๋ผ์ด๋ฒ„์‹œ ๋ฐ ๋ณดํ˜ธ ๋ฒ•๊ทœ๋ฅผ ์ค€์ˆ˜ํ•ด์•ผ ํ•˜๋Š” ์ƒํ™ฉ์ด๋‹ค. ์ด๋Ÿฌํ•œ ๊ทœ์ œ๋ฅผ ๊ฐ„๊ณผํ•˜๊ฑฐ๋‚˜ ์ค‘์š”์„ฑ์„ ๋‚ฎ๊ฒŒ ํ‰๊ฐ€ํ•  ๊ฒฝ์šฐ, ๋ฒŒ๊ธˆ๊ณผ ์ถ”๊ฐ€์ ์ธ ์ œ์žฌ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค.

์Šคํƒ€๋”ฉ์€ ๊ทœ์ œ๊ฐ€ ๋งŽ์€ ์กฐ์ง์ด ์ปดํ”Œ๋ผ์ด์–ธ์Šค ํ™œ๋™์œผ๋กœ ์ธํ•ด ์ƒ๋‹นํ•œ ์ถ”๊ฐ€ ๋ถ€๋‹ด์„ ์•ˆ๊ณ  ์žˆ์œผ๋ฉฐ, ์ด๋กœ ์ธํ•œ ํ”ผ๋กœ๊ฐ๋„ ์ ์ง€ ์•Š๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๋‹ค๋งŒ ์ตœ๊ทผ ๋ช‡ ๋…„๊ฐ„ CISO ์—ญํ• ์ด ์ปดํ”Œ๋ผ์ด์–ธ์Šค์— ๋Œ€ํ•œ ์ฑ…์ž„๊ณผ ๊ถŒํ•œ๊นŒ์ง€ ํ™•๋Œ€๋œ ๋งŒํผ, ์ด๋ฅผ ์†Œํ™€ํžˆ ํ•˜๊ฑฐ๋‚˜ ๊ณผ์†Œํ‰๊ฐ€ํ•  ์—ฌ์ง€๋Š” ์—†๋‹ค๊ณ  ๊ฐ•์กฐํ–ˆ๋‹ค.

ํŠนํžˆ ๊ธ€๋กœ๋ฒŒ ๊ธฐ์—…์˜ CISO๋Š” ์ตœ์‹  ๊ทœ์ œ ๋™ํ–ฅ์„ ๋ฉด๋ฐ€ํžˆ ํŒŒ์•…ํ•ด์•ผ ํ•œ๋‹ค. ํ†ฐ์Šจ์€ ์˜๊ตญ๊ณผ ์œ ๋Ÿฝ์—์„œ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๊ทœ์ œ ํ™˜๊ฒฝ์ด ๋น ๋ฅด๊ฒŒ ๊ฐ•ํ™”๋˜๊ณ  ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๊ทธ๋Š” GDPR(General Data Protection Regulation)๊ณผDORA(Digital Operational Resilience Act)๊ณผ ๊ฐ™์€ ํ”„๋ ˆ์ž„์›Œํฌ๊ฐ€ ๋ฌธ์„œํ™”๋œ ํ†ต์ œ๋ฟ ์•„๋‹ˆ๋ผ, ์‹ค์ฆ์ ์œผ๋กœ ๊ฒ€์ฆ ๊ฐ€๋Šฅํ•œ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ํšจ๊ณผ๋ฅผ ์กฐ์ง์— ์š”๊ตฌํ•˜๊ณ  ์žˆ๋‹ค๊ณ  ๋ถ„์„ํ–ˆ๋‹ค.

ํ†ฐ์Šจ์€ ๊ทœ์ œ ๋‹น๊ตญ์ด ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ๊ณผ ์šด์˜ ํšŒ๋ณตํƒ„๋ ฅ์„ฑ์ด ๋‹จ์ˆœํ•œ ๊ทœ์ • ์ค€์ˆ˜ ํ•ญ๋ชฉ์ด ์•„๋‹ˆ๋ผ, ๋น„์ฆˆ๋‹ˆ์Šค ํ”„๋กœ์„ธ์Šค ์ „๋ฐ˜์˜ ๋ชจ๋“  ๊ณ„์ธต์— ๊นŠ์ด ๋‚ด์žฌํ™”๋ผ ์žˆ๋Š”์ง€๋ฅผ ํ™•์ธํ•˜๋ ค ํ•œ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

๊ทธ๋Š” ์ œ3์ž ๋ฆฌ์Šคํฌ ๊ด€๋ฆฌ ์—ญ์‹œ ๊ทธ์— ๋ชป์ง€์•Š๊ฒŒ ์ค‘์š”ํ•˜๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค. ๊ณต๊ธ‰๋ง์ด ์ ์  ๋” ๋ณต์žกํ•˜๊ณ  ๋ถ„์‚ฐ๋ ์ˆ˜๋ก ์™ธ๋ถ€ ์ œ๊ณต์—…์ฒด๋กœ ์ธํ•œ ์ทจ์•ฝ์ ์€ ์‹ฌ๊ฐํ•œ ๊ทœ์ œ ๋ฐ ๋ณด์•ˆ ์ฑ…์ž„์œผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค๋Š” ๊ฒƒ์ด๋‹ค. ์ด๋Ÿฌํ•œ ๊ทœ์ œ ์š”๊ตฌ๋ฅผ ๋ณด์•ˆ ์ „๋žต์— ์„ ์ œ์ ์œผ๋กœ ๋ฐ˜์˜ํ•˜์ง€ ์•Š์„ ๊ฒฝ์šฐ, ๋ง‰๋Œ€ํ•œ ์žฌ๋ฌด์  ์ œ์žฌ๋Š” ๋ฌผ๋ก  ์šด์˜ ์ค‘๋‹จ๊ณผ ์žฅ๊ธฐ์ ์ธ ํ‰ํŒ ํ›ผ์†์œผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค๊ณ  ๊ฒฝ๊ณ ํ–ˆ๋‹ค.

AI ์ฑ—๋ด‡ ๋„์ž…์— ๋”ฐ๋ฅธ ๋ฒ•์  ์ฑ…์ž„ ์ธ์‹ ๋ฏธํก

์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋ณดํ—˜ ์ œ๊ณต์—…์ฒด ์ฝ”์–ผ๋ฆฌ์…˜์˜ ์ˆ˜์„ ์—ฐ๊ตฌ์› ๋‹ค๋‹ˆ์—˜ ์šฐ์ฆˆ๋Š” AI ์ฑ—๋ด‡์ด ๋ฐ์ดํ„ฐ ํ”„๋ผ์ด๋ฒ„์‹œ ์ธก๋ฉด์—์„œ ์ƒˆ๋กญ๊ฒŒ ๋ถ€์ƒํ•œ ์œ„ํ—˜ ์š”์†Œ๋ผ๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ์ฝ”์–ผ๋ฆฌ์…˜์ด ์•ฝ 200๊ฑด์˜ ํ”„๋ผ์ด๋ฒ„์‹œ ๊ด€๋ จ ์ฒญ๊ตฌ ์‚ฌ๋ก€์™€ 5,000๊ฐœ ๊ธฐ์—… ์›น์‚ฌ์ดํŠธ๋ฅผ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ, ์ „์ฒด ์ฒญ๊ตฌ์˜ 5%๊ฐ€ ์ฑ—๋ด‡ ๊ธฐ์ˆ ์„ ๊ฒจ๋ƒฅํ•œ ๊ฒƒ์ด์—ˆ๋‹ค.

์šฐ์ฆˆ๋Š” ์ด๋“ค ์ฒญ๊ตฌ๊ฐ€ AI ๋„๊ตฌ๊ฐ€ ๋“ฑ์žฅํ•˜๊ธฐ ํ›จ์”ฌ ์ด์ „์— ์ œ์ •๋œ ์ฃผ(ๅทž) ๋„์ฒญ ๋ฐฉ์ง€๋ฒ•์„ ๊ทผ๊ฑฐ๋กœ, ๊ณ ๊ฐ ๋Œ€ํ™”๋ฅผ ๋ถˆ๋ฒ•์ ์œผ๋กœ ๊ฐ€๋กœ์ฑ˜๋‹ค๊ณ  ์ฃผ์žฅํ•œ ์‚ฌ๋ก€๋ผ๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๋ชจ๋“  ์ฑ—๋ด‡ ๊ด€๋ จ ์ฒญ๊ตฌ๋Š” ๋Œ€ํ™” ์‹œ์ž‘ ์‹œ ํ•ด๋‹น ๋Œ€ํ™”๊ฐ€ ๋…น์Œ๋˜๊ณ  ์žˆ๋‹ค๋Š” ์‚ฌ์‹ค์„ ๊ณ ์ง€ํ–ˆ์–ด์•ผ ํ•œ๋‹ค๋Š” ๋™์ผํ•œ ๊ตฌ์กฐ๋ฅผ ๋”ฐ๋ž๋‹ค๋Š” ๋ถ„์„์ด๋‹ค.

ํ•ด๋‹น ์ฒญ๊ตฌ๋Š” ์ˆ˜์‹ญ ๋…„ ์ „์— ์ œ์ •๋œ ํ”Œ๋กœ๋ฆฌ๋‹ค ํ†ต์‹  ๋ณด์•ˆ๋ฒ• ์œ„๋ฐ˜์„ ์ฃผ์žฅํ•œ ๊ฒƒ์ด์—ˆ๋‹ค๊ณ  ์šฐ์ฆˆ๋Š” ์ „ํ–ˆ๋‹ค. ๊ทธ๋Š” ์ „์ฒด ์›น์‚ฌ์ดํŠธ ๊ฐ€์šด๋ฐ ์•ฝ 5%๊ฐ€ ์ฑ—๋ด‡ ๊ธฐ์ˆ ์„ ๋„์ž…ํ•˜๊ณ  ์žˆ์œผ๋ฉฐ, ์ด ๋น„์œจ์ด ์ฑ—๋ด‡์„ ์ค‘์‹ฌ์œผ๋กœ ์ œ๊ธฐ๋œ ์›น ํ”„๋ผ์ด๋ฒ„์‹œ ์ฒญ๊ตฌ ๋น„์ค‘๊ณผ ์ •ํ™•ํžˆ ์ผ์น˜ํ•œ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

์šฐ์ฆˆ๋Š” IT ์‚ฐ์—…๊ณผ ๊ธˆ์œต ์‚ฐ์—…์—์„œ ์ฑ—๋ด‡ ํ™œ์šฉ์ด ํŠนํžˆ ๋‘๋“œ๋Ÿฌ์กŒ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ํ•ด๋‹น ์‚ฐ์—… ์›น์‚ฌ์ดํŠธ์˜ ๊ฐ๊ฐ 9%์™€ 6%๊ฐ€ ์ฑ—๋ด‡์„ ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์—ˆ์œผ๋ฉฐ, ํ–ฅํ›„ ์ฑ—๋ด‡ ํ™œ์šฉ์ด ๋Š˜์–ด๋‚  ๊ฐ€๋Šฅ์„ฑ์ด ํฐ ๋งŒํผ ๊ด€๋ จ ์ฒญ๊ตฌ ์—ญ์‹œ ์ฆ๊ฐ€ํ•  ์ˆ˜ ์žˆ๋‹ค๊ณ  ์ „๋งํ–ˆ๋‹ค.

๊ทธ๋Š” ์ฑ—๋ด‡์„ ์ž˜๋ชป ์„ค๊ณ„ํ•˜๊ฑฐ๋‚˜ ์šด์˜ํ•  ๊ฒฝ์šฐ์˜ ์œ„ํ—˜์œผ๋กœ, ํ”„๋กฌํ”„ํŠธ ์ธ์ ์…˜๊ณผ ๊ฐ™์€ ๊ธฐ๋ฒ•์„ ํ†ตํ•ด ์‹œ์Šคํ…œ์ด ์‰ฝ๊ฒŒ ์กฐ์ž‘๋  ์ˆ˜ ์žˆ๋‹ค๋Š” ์ ์„ ๊ผฝ์•˜๋‹ค. ์ด๋Ÿฌํ•œ ๋ฐฉ์‹์œผ๋กœ ๊ณ ๊ฐ ๋ฐ์ดํ„ฐ๊ฐ€ ์œ ์ถœ๋œ ์‚ฌ๋ก€๊ฐ€ ์ด๋ฏธ ์ˆ˜์‹ญ ์ฐจ๋ก€ ๋ฌธ์„œํ™”๋ผ ์žˆ๋‹ค๊ณ  ๊ฒฝ๊ณ ํ–ˆ๋‹ค.

ํด๋ผ์šฐ๋“œ ๋ณด์•ˆ ์ฒด๊ณ„ ๊ด€๋ฆฌ ๊ณต๋ฐฑ

์ด์ œ๋Š” ๊ฑฐ์˜ ๋ชจ๋“  ๊ธฐ์—…์ด ์ตœ์†Œํ•œ ์ผ๋ถ€ ์šด์˜์„ ํด๋ผ์šฐ๋“œ ์„œ๋น„์Šค์— ์˜์กดํ•˜๊ณ  ์žˆ๋‹ค. ์ด๋Ÿฌํ•œ ์„œ๋น„์Šค์˜ ๋ณด์•ˆ์„ ์†Œํ™€ํžˆ ํ•˜๋Š” ๊ฒƒ์€ ๋ฌธ์ œ๋ฅผ ์ž์ดˆํ•˜๋Š” ๊ฒƒ๊ณผ ๋‹ค๋ฆ„์—†๋‹ค.

PwC์˜ ์•„๋‹ด์Šคํ‚ค๋Š” ํด๋ผ์šฐ๋“œ์™€ SaaS ํ™•์‚ฐ์ด ๊ณ„์†๋  ๊ฒƒ์ด๋ผ๋ฉฐ, ์•„์ด๋ดํ‹ฐํ‹ฐ, ์•”ํ˜ธํ™”, ๋กœ๊น…, ์™ธ๋ถ€ ํ†ต์‹ ์„ ์œ„ํ•œ ๊ฐ€๋“œ๋ ˆ์ผ์„ ๊ฐ–์ถ˜ ํ‘œ์ค€ ๋žœ๋”ฉ ์กด์„ ์‚ฌ์ „์— ์„ค๊ณ„ํ•ด์•ผ ํ•œ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๋˜ํ•œ ์ •์ฑ…์„ ์ฝ”๋“œ๋กœ ๊ตฌํ˜„ํ•ด ๊ทœ์ • ์ค€์ˆ˜ ์„ค์ •์ด ๊ธฐ๋ณธ๊ฐ’์ด ๋˜๋„๋ก ํ•˜๋Š” ์ ‘๊ทผ์ด ํ•„์š”ํ•˜๋‹ค๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค.

์•„๋‹ด์Šคํ‚ค๋Š” CISO๊ฐ€ ์ž์‚ฐ์„ ์ง€์†์ ์œผ๋กœ ํŒŒ์•…ํ•˜๊ณ , ์„ค์ • ์˜ค๋ฅ˜๋ฅผ ์‹๋ณ„ํ•˜๋ฉฐ, ์ด์ƒ ํ–‰์œ„๋ฅผ ํƒ์ง€ํ•˜๊ณ , ํ•„์š”ํ•  ๊ฒฝ์šฐ ์ž๋™์œผ๋กœ ์กฐ์น˜ํ•  ์ˆ˜ ์žˆ๋Š” ๋„๊ตฌ๋ฅผ ํ™œ์šฉํ•ด์•ผ ํ•œ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

๊ทธ๋Š” ๋ชจ๋“  ๋ฐฉํ–ฅ์—์„œ ์Ÿ์•„์ง€๋Š” ๊ฒฝ๊ณ ์— ์ผ์ผ์ด ๋Œ€์‘ํ•˜๋Š” ๋ฐฉ์‹์œผ๋กœ๋Š” ๋ฉ€ํ‹ฐํด๋ผ์šฐ๋“œ ํ™•์‚ฐ๊ณผ ์•„์ด๋ดํ‹ฐํ‹ฐ ์ค‘์‹ฌ ๊ณต๊ฒฉ์„ ๋”ฐ๋ผ๊ฐ€๊ธฐ ์–ด๋ ต๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค. ํด๋ผ์šฐ๋“œ ์ „๋ฐ˜์˜ ์‹ ํ˜ธ๋ฅผ ์—ฐ๊ณ„ํ•˜๊ณ  ๊ฒฝ๊ณ  ์†Œ์Œ์„ ์ค„์ด๊ธฐ ์œ„ํ•ด ์ž๋™ํ™”์™€ AI๋ฅผ ํ™œ์šฉํ•ด ๋ณด์•ˆ ๊ด€์ œ ์„ผํ„ฐ๋ฅผ ํ˜„๋Œ€ํ™”ํ•ด์•ผ ํ•œ๋‹ค๊ณ  ๊ฐ•์กฐํ–ˆ๋‹ค.

์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ์—์„œ ์ธ์  ์š”์ธ ๊ฒฝ์‹œ

๋‹ค์–‘ํ•œ ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋„๊ตฌ์™€ ์„œ๋น„์Šค๊ฐ€ ๊ตฌ์ถ•๋ผ ์žˆ๋‹ค ๋ณด๋‹ˆ, ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ์—์„œ ์‚ฌ๋žŒ์˜ ์—ญํ• ์„ ๊ฐ„๊ณผํ•˜๊ธฐ ์‰ฝ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ์ด๋Ÿฌํ•œ ์ธ์‹์€ ์—ฌ๋Ÿฌ ํ˜•ํƒœ์˜ ๋ณด์•ˆ ์‚ฌ๊ณ ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค.

๋กœํŽŒ CM๋กœ์˜ ๊ธฐ์ˆ ยท์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ํŒŒํŠธ๋„ˆ์ธ ๋ฒ ์Šค ํŽ„์ปค์Šจ์€ ์‹ค์ œ ๊ฒฝํ—˜์ƒ ๋ณด์•ˆ ์นจํ•ด์˜ ์ง์ ‘์ ์ธ ์›์ธ์€ ๋Œ€๋ถ€๋ถ„ ์ธ์  ์˜ค๋ฅ˜๋ผ๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค. ๊ทธ๋Š” ๋Œ€์ฒด๋กœ ๋ˆ„๊ตฐ๊ฐ€๊ฐ€ ์‚ฌ๊ธฐ์— ์†์•„ ์•…์„ฑ ์ฝ”๋“œ๊ฐ€ ์œ ์ž…๋˜๋Š” ํ†ต๋กœ๋ฅผ ์—ด๊ฒŒ ๋œ๋‹ค๊ณ  ๋ถ„์„ํ–ˆ๋‹ค.

์‚ฌ๋žŒ์€ ๋ฉ”์‹œ์ง€์— ์ฆ‰๊ฐ ๋ฐ˜์‘ํ•˜๊ฑฐ๋‚˜ ๋ฌธ์„œ๋ฅผ ์—ด์–ด๋ณด๊ณ  ์‹ถ์–ด ํ•˜๋Š” ๊ฒฝํ–ฅ์ด ์žˆ์œผ๋ฉฐ, ์ด๋Ÿฌํ•œ ํ–‰๋™์ด ๋ฌธ์ œ๋ฅผ ํ‚ค์šด๋‹ค. ํŽ„์ปค์Šจ์€ ๊ทผ๋ณธ์ ์ธ ํ•ด๋ฒ•์€ ๋” ๋งŽ์€ ๊ธฐ์ˆ  ๋„์ž…์ด ์•„๋‹ˆ๋ผ, ์ง์›์ด ์ž์‹ ์˜ ๊ธฐ๊ธฐ ์ ‘๊ทผ์ด๋‚˜ ์ •๋ณด ์ œ๊ณต ์š”์ฒญ์— ๋Œ€ํ•ด ๊ฑฐ์ ˆํ•  ์ˆ˜ ์žˆ๋„๋ก ๋•๋Š” ๊ต์œก์— ์žˆ๋‹ค๊ณ  ์„ค๋ช…ํ–ˆ๋‹ค.

๊ทธ๋Š” ํ”„๋ฆฐํ„ฐ๋‚˜ ํŒฉ์Šค ์žฅ๋น„๊ฐ€ ๋„คํŠธ์›Œํฌ์— ์—ฐ๊ฒฐ๋ผ ์žˆ๋‹ค๋Š” ์‚ฌ์‹ค์„ ์žŠ๊ณ  ๋ณด์•ˆ ์„ค์ •์„ ์ ์šฉํ•˜์ง€ ์•Š๊ฑฐ๋‚˜, ๋„คํŠธ์›Œํฌ์—์„œ ๋ถ„๋ฆฌํ•˜์ง€ ์•Š๋Š” ๊ฒƒ ์—ญ์‹œ ๋Œ€ํ‘œ์ ์ธ ์ธ์  ์˜ค๋ฅ˜ ์‚ฌ๋ก€๋ผ๊ณ  ์–ธ๊ธ‰ํ–ˆ๋‹ค.

๋˜ ๋‹ค๋ฅธ ๋ฌธ์ œ๋กœ๋Š” ์ด๋ฏธ ๋„์ž…๋ผ ์žˆ๊ฑฐ๋‚˜ ์‚ฌ์šฉ ๊ฐ€๋Šฅํ•œ ๋ณด์•ˆ ๊ธฐ์ˆ ์„ ์ œ๋Œ€๋กœ ํ™œ์šฉํ•˜์ง€ ์•Š๋Š” ์ ์„ ๊ผฝ์•˜๋‹ค. ํŽ„์ปค์Šจ์ด ์ตœ๊ทผ ๋‹ด๋‹นํ•œ ์†Œ์†ก ์‚ฌ๋ก€์—์„œ๋Š” ๊ฒฐ์ œ์นด๋“œ์‚ฐ์—… ๋ฐ์ดํ„ฐ ๋ณด์•ˆ ํ‘œ์ค€(PCI DSS)์— ๋”ฐ๋ผ ํŒŒ์ผ ๋ฌด๊ฒฐ์„ฑ ๊ด€๋ฆฌ ์†Œํ”„ํŠธ์›จ์–ด๋ฅผ ์‚ฌ์šฉํ•˜๊ณ  ์žˆ๋‹ค๊ณ  ์ฃผ์žฅํ–ˆ์ง€๋งŒ, ์‹ค์ œ๋กœ๋Š” ๊ฒฝ๊ณ ๋ฅผ ์„ค์ •ํ•˜์ง€ ์•Š์•˜๊ฑฐ๋‚˜ ๊ฒฝ๊ณ ๋ฅผ ๋ฌด์‹œํ•œ ๊ฒฝ์šฐ๊ฐ€ ํฌํ•จ๋ผ ์žˆ์—ˆ๋‹ค.

ํŽ„์ปค์Šจ์€ ์•„๋ฌด๋ฆฌ ๊ฐ•๋ ฅํ•œ ๋ณด์•ˆ ์†Œํ”„ํŠธ์›จ์–ด๋ฅผ ๊ฐ–์ถ”๊ณ  ์žˆ๋”๋ผ๋„, ์ด๋ฅผ ์˜ฌ๋ฐ”๋ฅด๊ฒŒ ์„ค์ •ํ•˜๊ณ  ์ง€์†์ ์œผ๋กœ ๊ด€๋ฆฌํ•˜์ง€ ์•Š์œผ๋ฉด ์˜๋ฏธ๊ฐ€ ์—†๋‹ค๊ณ  ์ง€์ ํ–ˆ๋‹ค.
dl-ciokorea@foundryco.com

โŒ
โŒ