DOI QR코드

DOI QR Code

우리나라의 인공지능(AI)서비스를 위한 개인정보보호 개선방안

The Improvement Plan for Personal Information Protection for Artificial Intelligence(AI) Service in South Korea

  • 신영진 (배재대학교 지능SW공학부 정보보안학)
  • Shin, Young-Jin (Division of Intelligent SW Engineering-Information Security, PaiChai University)
  • 투고 : 2021.02.02
  • 심사 : 2021.03.20
  • 발행 : 2021.03.28

초록

본 연구는 인공지능서비스가 확대되면서 개인정보의 처리 및 보호에 관한 안전성이 요구되어짐에 따라, 우리나라가 추진해야 할 개인정보보호 개선사항을 도출하고자 하였다. 이를 위해서 문헌조사를 통해서 자료 수집 및 분석을 기반으로 하였으며, 자율주행자동차, 의료/헬스케어, 에너지, 금융, 유통/물류, 법률자문, 홈비서 등 주요 인공지능서비스를 중심으로 개인정보 이슈사항 및 각 서비스에 적합한 개인정보보호기준을 도출하였다. 또한, 인공지능서비스에서의 개인정보보호에 관한 법제적 기준과 처리과정의 기준을 중심으로 주요국가의 추진사례를 검토하였고, 이를 중심으로 국내에 적용하여 개선방안으로 제시하였다. 이와 관련하여, 법제적 기준에서는 인공지능서비스 확대에 따른 개인정보보호 법률의 재정비, 인공지능서비스의 개발 및 제공에서의 책임과 원칙 준수, 인공지능서비스로 인한 개인정보침해 및 보안위협 등으로부터의 위험관리체계 운영 등이 요구된다. 처리과정의 기준에서는 첫째, 전처리 및 정제에 관해서 데이터셋 참조모델 표준화, 데이터셋 품질관리, AI애플이케이션의 자발적 라벨링이 필요하며, 둘째, 알고리즘 개발 및 활용에서는 알고리즘의 명확한 범위규정과 그에 대한 규제를 마련하여 적용할 필요가 있다. 특히, 국내의 안전한 인공지능서비스를 제공하기 위해서는 비식별조치 외에 우리나라에 적합한 개인정보보호 개선과제로 적용해 나가야 할 것이다. 따라서, 본 연구를 바탕으로 향후 인공지능서비스에서의 개인정보보호를 위한 프레임워크를 도출하는 연구를 하고자 한다.

This study is to suggest improvements of personal information protection in South Korea, according to requiring the safety of process and protection of personal information. Accordingly, based on data collection and analysis through literature research, this study derived the issues and suitable standards of personal information for major artificial intelligence services. In addition, this cases studies were reviewed, focusing on the legal compliance and porcessing compliance for personal information proection in major countries. And it suggested the improvement plan applied in South Korea. As the results, in legal compliance, it is required reorganization of related laws, responsibility and compliance to develop and provide AI, and operation of risk management for personal information protection laws in AI services. In terms of processing compliance, first, in pre-processing and refining, it is necessary to standardize data set reference models, control data set quality, and voluntarily label AI applications. Second, in development and utilization of algorithm, it is need to establish and apply a clear regulation of the algorithm. As such, South Korea should apply suitable improvement tasks for personal information protection of safe AI service.

키워드

참고문헌

  1. J. B. Park & H. H. Kim. (2017). Advancement of Artificial Intelligence Technology and its Legal Countermeasure. Hanyang Law Review. 34(2), 37-62.
  2. F. H. Cate & R. Dockery. (2018. 11). (T. O. Kim, Trans.). Artificial Intelligence and Data Protection : Observations on a Growing Conflict. Journal of Law & Economic Regulation. 11(2), 131-146.
  3. K. S. Lim. (2019). The legal discipline of artificial intelligence : focusing on the legal discipline of artificial intelligence algorithm and big data. Doctoral dissertation. Hanyang University School of Law.
  4. J. OCallaghan. (2018). Inferential Privacy and Artificial Intelligence. Journal of Law & Economic Regulation. 11(2), 72-89.
  5. National Information Society Agency, (2017) Korea A.I. Company Status Report. Naju: KISA.
  6. Ministry of Science and ICT. (2018). Artificial intelligence (AI) R&D strategy for realizing I-Korea 4.0. Sejong: MSIT.
  7. J. M. Shin. (2018. 11. 25). From case law analysis to legal counseling.. Is the age of AI lawyers open? Hankyoreh News. (Online). http://www.hani.co.kr/arti/PRINT/871629.html
  8. J. H. Kim et al. (2016). A Study on Personal Information Protection in Artificial Intelligence and Robotics. Seoul: Personal Information Protection Committee.
  9. D. S. Choi (2016). Artificial intelligence and fintech security. Review of KIISC. 26(2), 35-38.
  10. S. M. Yoo. (2018. 9. 28). AI used for security, useful for hacking. The Science Times. (Online). https://m.post.naver.com/viewer/postView.nhn?volumeNo=16783071&memberNo=30120665&vType=VERTICAL
  11. W. T. Lee. (2016). EU algorithm regulation issues and policy implications. KISDI Premium Report. Jincheon: KISDI.
  12. legislationpp. (2018. 11. 29). Overseas discussions on AI privacy issues. legislationpp. (Online). http://blog.naver.com/PostView.nhn?blogId=legislationpp&logNo=221408527453
  13. Y. D. Kim & W. C. Jang. (2016). Direction of Improvement of Privacy Protection Regulation for Promoting Artificial Intelligence Industry. Journal of Law & Economic Regulation. 9(2), 161-176.
  14. W. T. Lee & J. M. Kang. (2016). A study on Model of Personal Information Protection based on Artificial Intelligence Technology or Service. The Journal of The Institute of Internet, Broadcasting and Communication. 18(4), 1-6. DOI : 10.7236/JIIBC.2016.16.4.1
  15. Y. J. Shin. (2020). A Study on Personal Information Protection Tasks of Artificial Intelligence Service. Winter academic conference proceedings of Korean Association For Public Administration in 2020. Seoul: KAPA.
  16. Korea Internet & Security Agency. (2020). Request for proposal, A study on improving personal information protection policy to foster the artificial intelligence industry.
  17. Y. J. Shin. (2020). A Study on Improvement Measures to Implement Safe and Intelligent Government: Focusing on Prevention of Dysfunction and Privacy by Application of Artificial Intelligence Technology. Korea Criminal Intelligence Review. 6(2), 135-162. DOI : 10.33563/KSCIA.2020.6.2.8
  18. J. M. Yang. (2020). Some legal considerations of the AI chatbot algorithm. Hongik law review. 21(1), 449. DOI : 10.16960/jhlr.21.1.202002.449
  19. Future of life. (2019. 3. 19). AI Policy-United Stateds. (Online). https://futureoflife.org/ai-policy-united-states/
  20. The White House. (2020. 2). Remove Barriers to AI Innovation. American Artificial Intelligence Initiative: Year One Annual Report.
  21. Council of Europe. (2018). European ethical Charter on the use of Artificial Intelligence in judicial systems and their environment. 7-12.
  22. Law Council of Australlia. (2019. 6. 28). Artificial Intelligence: Australia's Ethics Framework, 13-28.
  23. White & case. (2020. 8. 24). Regulation of Artificial Inteligence in Europe and Japan. (Online). https://www.whitecase.com/publications/insight/regulation-artificial-intelligence-europe-and-japan
  24. China innovation funding. (2020. 6. 17). Publication of the "New Generation AI Governance Principles-Developing Responsible AI". China innovation funding. (Oinline). http://chinainnovationfunding.eu/dt_testimonials/publication-of-the-new-generation-ai-governance-principles-developing-responsible-ai/
  25. OECD Legal Instruments. (n. d.) Recommendation of the Council on Artificial Intelligence. (Oinline). https://legalinstruments.oecd.org/en/instruments/OECD-LEGAL-0449
  26. Australian Government(Department of Industry, Sciences, Energy and Resources). (2019). Artificial Intelligence: Australia's Ethics Framework, A Disscussion Paper. Canberra: Department of Industry, Sciences, Energy and Resources.
  27. G. B. Song & J. H. Cho. (2020). Implications of AI(Artificial Intelligence) Policy in Korea Police Agency - Focusing on the Policy in France. The Police Science Journal. 15(1), 247-266. https://doi.org/10.16961/POLIPS.2020.15.1.247
  28. Code Dragon. (n. d.) Data Achitecure Reference Model. Diagram (Online). https://codedragon.tistory.com/8965
  29. DRAAGON1. (2016. 8. 29). Data Achitecure Reference Model. (Online). http:://bit.ly./2IuH8Hs
  30. European Commission. (2020. 2. 19). White Paper On Artificial Intelligence - A European approach to excellence and trust.
  31. Korea Communications Commission & Korea Internet & Security Agency. (2020) European Union General Data Protection Regulation.: 28-75.
  32. K. A. Ahn. (2020. 7). The 21st National Assembly's biggest homework is'Creating software, digital legal system and ecosystem suitable for the era of AI and untact, Monthly Software Oriented Society. 73, 26-35.
  33. A. Cavoukian. (2011). Privacy by Design, The 7 Foundational Principal. Ontario: Information and Privacy Commissioner of Ontario. (Online). http://privacybydesign.ca
  34. Ministry of Trade, Industry and Energy.Korea Industrial Development Institute. (2019). Japan's Artificial Intelligence (AI) Policy Trends. Sejong: MOTIE & KID.