Ⅱ 정보보호
1. 사이버보안 대응 강화 ····································································95
‣ 일본 내각사이버보안센터, 중요 인프라 정보보안 확보 안전기준 책정지침 개정을 결정 (2019.
01. 17.) ·····································································································································95
‣ 미국 웨스트버지니아주, 사이버보안사무소 설립 법안 가결 (2019. 3. 7.) ······························98
‣ 유럽네트워크정보보호원(ENISA), 사이버보안 문화에 대한 행동 가이드라인 발표 (2019. 04. 16.) · 101
‣ 일본 정보처리추진기구(IPA), 중소기업의 정보보안대책 가이드라인 개정 (2019. 04. 09.) ··104
‣ 호주 사이버보안센터(ACSC), 네트워크 및 데이터 서비스 보안 권고안 발표 (2019. 04. 18.) ··107
‣ 미국 상원, 연방정부 사이버보안 인력의 순환ㆍ교류 활성화 법안 승인 (2019. 4. 30.) ·······110
‣ 미국 정부, 사이버보안 인력 양성을 위한 행정명령 시행 (2019. 5. 2.) ································113
‣ 호주 사이버보안센터(ACSC), 데이터 유출 관리 가이드의 개정판 공개 (2019. 5. 17.) ······116
‣ 미국 하원, 국토안보부 사이버보안 사고 대응팀 창설 법안 통과 (2019. 6. 10.) ·················119
‣ 캐나다 사이버보안센터(CCCS), 사이버보안 교육과정 가이드 초안 발표 및 의견수렴 실시
(2019. 5. 29.) ························································································································121
‣ 프랑스 국가정보시스템보안청(ANSSI), 인터넷ㆍ정보시스템의 상호 연계를 위한 권고안 개정판
발표 (2019. 6. 18.) ···············································································································124
‣ 캐나다 공공안전부, 국가 사이버보안 행동계획 발표 (2019. 8. 7.) ·······································127
‣ 유럽 사이버보안기구(ECSO), 사이버보안 적합성 평가 유형 선정 가이드 발표 (2019. 9. 3.) ·130
‣ 유럽 유럽연합사이버보안원(ENISA), 사이버보안 사고대응팀의 의사소통을 위한 보고서 발표
(2019. 9. 4.) ··························································································································133
‣ 미국 국토안보부, 국가 중요 인프라에 대한 새로운 사이버보안 전략 보고서 발표 (2019. 8. 22.) ···136
‣ 영국 사이버보안센터(NCSC), 사이버보안 복원력 평가 프레임워크 개정 (2019. 9. 30.) ···· 138
‣ 호주 사이버보안센터(ACSC), 소규모 기업을 위한 사이버보안 가이드 발표 (2019. 10. 09.) ··141
‣ EU 집행위원회, NIS지침에 따른 필수 서비스 제공자 식별 보고서 발표 (2019. 10. 28.) ·· 144
‣ 일본 내각사이버보안센터, 중요 인프라 사업자를 위한 정보 공유 지침서 발표 (2019. 10. 28.) ·· 147
‣ 프랑스 국가정보시스템보안청(ANSSI), 디지털 위험 관리 지원을 위한 가이드 발표 (2019. 11. 18.) · 150
‣ 독일 연방경제에너지부(BMWi), 사이버보안 강화를 위한 산업 전략 계획 발표 (2019. 11. 29.) ·······153
‣ 미국 국가과학기술위원회(NSTC), 연방 사이버보안 연구 개발 전략 계획 발표 (2019. 12. 10.) ········155
2. 개별 분야 정보보호 ·····································································158
1) IoT ················································································································158
‣ 일본 총무성 및 NICT, IoT 보안 대책 프로젝트 NOTICE 실시 (2019. 2. 20.) ···················158
‣ 유럽 전기통신표준화기구, IoT 제품 및 서비스에 대한 보안 표준 발표 (2019. 2. 19.) ·······161
‣ 미국 상원 및 하원, 사물인터넷 사이버 보안 개선법(안) 발의 (2019. 3. 11.) ·····················164
‣ 미국 국가사이버보안센터(NCCoE), 에너지 산업 부문의 IoT 보안 가이드 초안 발표 (2019. 5. 6.) ··167
2) 금융 ··············································································································170
‣ 독일 연방정보보안청(BSI), 전자기록시스템 안전장치 지침 개정 (2019. 2. 13.) ·················170
‣ 미국 뉴햄프셔 주지사, 보험 데이터 보안법 서명 (2019. 8. 2.) ············································173
3) 보건ㆍ의료 ····································································································176
‣ 호주 연방의료제품청(TGA), 산업용 의료기기의 사이버보안 지침 발표 (2019. 7. 18.) ·······176
‣ 독일 연방정보보안청(BSI), 의료기기의 사이버보안 강화를 위한 가이드 발표 (2019. 11. 18.) ·179
‣ EU 의회, 건강 및 의료 분야 디지털 전환 증진 결의안 채택 (2019. 12. 18.) ·························182
4) 스마트공장 ····································································································185
‣ 독일 연방정보보안청(BSI), 공예산업을 위한 IT 정보보호 기준 발표 (2019. 03. 28.) ········185
‣ 유럽 네트워크정보보호원(ENISA), 산업 4.0 분야의 사이버보안 권고안 발표 (2019. 5. 20.) ·188
5) 블록체인 ·······································································································191
‣ 미국 뉴저지 주지사, 블록체인 기술 전담팀 설립 법안 서명 (2019. 8. 8.) ··························191
‣ 독일 연방경제에너지부(BMWi), 디지털 기술의 혁신을 위한 블록체인 전략 발표 (2019. 9. 19.) · 193
6) 보안 취약점 ··································································································196
‣ 미국 하원, 사이버보안 취약점 개선법 통과 (2019. 9. 26.) ··················································196
7) 통신망ㆍ장비 ································································································198
‣ 독일 연방네트워크청(BNetzA), 5G 네트워크 통신 서비스를 위한 보안 요구사항 공개 (2019.
03. 07.) ···································································································································198
‣ 유럽 집행위원회, 5G 네트워크의 사이버보안 권고안 발표 (2019. 03. 26.) ························202
‣ 미국 상원, 안전한 5G 보안 전략 수립을 위한 법안 발의 (2019. 03. 27.) ·························205
‣ 미국 정부, 정보통신기술 및 서비스 공급망 확보에 대한 행정명령 시행 (2019. 5. 15.) ·····208
‣ 프랑스 경제재정부, 5G 네트워크 통신 운영에 대한 국가안보법 시행 (2019. 8. 1.) ···········211
‣ 일본 총무성, IoT · 5G 보안 종합 대책 공표 (2019. 8. 30.) ··············································213
‣ 독일 연방네트워크청(BNetzA), 5G 네트워크 통신 서비스의 보안 요구 사항 초안 발표 (2019. 10. 15.) · 216
8) 해양 ··············································································································223
‣ 유럽연합사이버보안원(ENISA), 해양부문의 사이버보안 강화 사례 보고서 발표 (2019. 11. 26.) · 223
9) 기타 ··············································································································226
‣ 영국 감시카메라위원회(SCC), 비디오 감시 시스템의 안전성 자체 인증 지침 개정 (2019. 8. 13.) · 226
‣ 미국 상원, 딥페이크 기술 사용 등에 대한 보고서 작성 법안 통과 (2019. 10. 24.) ···········229
‣ 중국 전국인민대표회의, 국가 안보 및 암호의 관리를 위한 암호법 의결 (2019. 10. 26.) ···231
Ⅲ 기고
‣ 개인 스마트폰과 PC 등에 내장된 전자정보 압수ㆍ수색에 대한 법적 쟁점 (성중탁 교수) ······237
‣ 프랑스의 IT 법제 동향 및 시사점 (오승규 연구위원) ······························································246
‣ 융합보안의 쟁점과 과제 (정필운 교수) ·····················································································252
‣ 유럽연합 디지털 단일 시장 저작권 지침 (김창화 교수) ···························································260
‣ 일본의 핀테크 관련 입법동향 (곽관훈 교수) ············································································267
‣ 인터넷상 불법정보 차단의 법적 쟁점 (정경오 변호사) ·····························································275
‣ 자율주행과 개인정보 규제 패러다임의 혁신 (이상직 변호사) ··················································281
‣ 플랫폼비즈니스의 법적 이슈 및 앞으로의 과제 (이효경 교수) ·················································288
‣ 의료 빅데이터에 관한 정보법상 쟁점 연구 (이규호 교수) ·······················································294
‣ 블록체인 기술을 이용한 스마트계약(Smart Contract)의 법제적 과제 (윤태영 교수) ···········304
‣ EU 사이버보안역량센터 설립법안 (홍선기 교수) ······································································311
‣ 프랑스 《디지털 공화국에 관한 법률》의 주요 개정 내용 및 효과 (정재도 책임연구원) ··········321
Ⅳ 상세 법제 동향
‣ 인공지능 ·····································································································································333
‣ 사물인터넷 ··································································································································343
‣ 5G 네트워크 통신 ·····················································································································350
‣ 자율주행자동차·무인항공기 ········································································································359
‣ 스마트공장 ··································································································································366
‣ 디지털 서비스 및 콘텐츠 ···········································································································372
‣ 금융ㆍ핀테크·블록체인ㆍ암호 ·····································································································381
‣ 건강ㆍ보건ㆍ의료 ·······················································································································390
‣ 인터넷 정책ㆍ전략 ······················································································································396
‣ 사이버보안 정책ㆍ전략 ···············································································································403
‣ 사이버보안 조직ㆍ사고대응 ········································································································411
‣ 사이버보안 인재개발ㆍ교육 ········································································································420