Nadya Bartol: Better cybersecurity starts with honesty and accountability | TED

35,909 views

2021-06-01 ใƒป TED


New videos

Nadya Bartol: Better cybersecurity starts with honesty and accountability | TED

35,909 views ใƒป 2021-06-01

TED


์•„๋ž˜ ์˜๋ฌธ์ž๋ง‰์„ ๋”๋ธ”ํด๋ฆญํ•˜์‹œ๋ฉด ์˜์ƒ์ด ์žฌ์ƒ๋ฉ๋‹ˆ๋‹ค.

00:00
Transcriber:
0
0
7000
๋ฒˆ์—ญ: ํ˜œ์ง€ ์žฅ ๊ฒ€ํ† : JY Kang
00:13
Today, I'm going to talk about a shameful topic.
1
13063
3667
์˜ค๋Š˜์€ ๋ถ€๋„๋Ÿฌ์šด ์–˜๊ธฐ๋ฅผ ํ•ด๋ณด๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค.
00:17
This has happened to many of us, and it's embarrassing,
2
17463
4034
์šฐ๋ฆฌ ๋Œ€๋ถ€๋ถ„์—๊ฒŒ ํ•ด๋‹น๋˜๋Š” ๊ฒƒ์ด๊ณ  ๋‹นํ™ฉ์Šค๋Ÿฌ์šด ์–˜๊ธฐ์˜ˆ์š”.
00:21
but if we don't talk about it, nothing will ever change.
3
21530
3367
ํ•˜์ง€๋งŒ ์šฐ๋ฆฌ๊ฐ€ ์ด ์–˜๊ธฐ๋ฅผ ํ•˜์ง€ ์•Š์œผ๋ฉด ์•„๋ฌด๊ฒƒ๋„ ๋ฐ”๋€Œ์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
00:24
It's about being hacked.
4
24930
2067
๋ฐ”๋กœ ํ•ดํ‚น์— ๋Œ€ํ•œ ๊ฒƒ์ž…๋‹ˆ๋‹ค.
00:27
Some of us have clicked on a phishing link and downloaded a computer virus.
5
27630
4600
์šฐ๋ฆฌ ์ค‘ ๋ช‡๋ช‡์€ ํ”ผ์‹ฑ ์‚ฌ๊ธฐ ๋งํฌ๋ฅผ ํด๋ฆญํ•˜๊ฑฐ๋‚˜
์ปดํ“จํ„ฐ ๋ฐ”์ด๋Ÿฌ์Šค๋ฅผ ๋‹ค์šด๋ฐ›์€ ์  ์žˆ์„ ๊ฒ๋‹ˆ๋‹ค.
00:32
Some of us have had our identities stolen.
6
32263
2434
๊ฐœ์ธ์ •๋ณด๋ฅผ ๋„๋‚œ๋‹นํ•œ ๋ถ„๋„ ์žˆ๊ฒ ์ฃ .
00:34
And those of us who are software developers
7
34730
2000
์šฐ๋ฆฌ ๊ฐ™์€ ์†Œํ”„ํŠธ์›จ์–ด ๊ฐœ๋ฐœ์ž๋“ค ์ค‘์—๋Š”
00:36
might have written insecure code with security bugs in it
8
36763
3367
๋ณด์•ˆ์— ์˜ค๋ฅ˜๊ฐ€ ์žˆ๋Š” ์œ„ํ—˜ํ•œ ์ฝ”๋“œ๋ฅผ ์ผ์„์ง€๋„ ๋ชจ๋ฆ…๋‹ˆ๋‹ค.
00:40
without realizing it.
9
40163
1400
๊ทธ๋Ÿฐ ์ค„๋„ ๋ชจ๋ฅด๊ณ  ๋ง์ด์ฃ .
00:42
As a cybersecurity expert,
10
42530
1700
์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์ „๋ฌธ๊ฐ€๋กœ์„œ
00:44
I have worked with countless companies on improving their cybersecurity.
11
44263
4334
์ €๋Š” ์ˆ˜๋งŽ์€ ๊ธฐ์—…๊ณผ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ์„ ๊ฐœ์„ ํ•˜๋Š” ์ผ์„ ํ•ด์™”์Šต๋‹ˆ๋‹ค.
00:49
Cybersecurity experts like me have advised companies
12
49063
3400
์ € ๊ฐ™์€ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์ „๋ฌธ๊ฐ€๋“ค์€ ๊ธฐ์—…๋“ค์—๊ฒŒ ์—ฌ๋Ÿฌ ์กฐ์–ธ์„ ํ•ด์ค๋‹ˆ๋‹ค.
00:52
on good cybersecurity practices,
13
52497
2600
๋ฐ”๋žŒ์งํ•œ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ํ™œ๋™,
00:55
monitoring tools
14
55130
1133
๊ฐ์‹œ ๋„๊ตฌ์™€
00:56
and proper user behaviors.
15
56297
1700
์ ์ ˆํ•œ ์‚ฌ์šฉ์ž ํ–‰๋™์— ๋Œ€ํ•ด์„œ์š”.
00:58
But I actually see a much bigger problem that no tool can fix:
16
58030
4733
ํ•˜์ง€๋งŒ ์–ด๋–ค ๋„๊ตฌ๋กœ๋„ ๊ณ ์น  ์ˆ˜ ์—†๋Š” ๋งค์šฐ ์‹ฌ๊ฐํ•œ ๋ฌธ์ œ๋ฅผ ๋ฐœ๊ฒฌํ–ˆ์ฃ .
01:02
the shame associated with the mistakes that we make.
17
62797
3300
๋ฐ”๋กœ ์šฐ๋ฆฌ๊ฐ€ ์ €์ง€๋ฅด๋Š” ์‹ค์ˆ˜์— ๋Œ€ํ•œ ์ˆ˜์น˜์‹ฌ์ž…๋‹ˆ๋‹ค.
01:06
We like to think of ourselves as competent and tech savvy,
18
66563
3867
์šฐ๋ฆฌ๋Š” ์šฐ๋ฆฌ ์Šค์Šค๋กœ๋ฅผ ์œ ๋Šฅํ•˜๋ฉฐ ์ตœ์‹ ๊ธฐ์ˆ ์„ ์ž˜ ์•ˆ๋‹ค๊ณ  ์ƒ๊ฐํ•ฉ๋‹ˆ๋‹ค.
01:10
and when we make these mistakes that can have a really bad impact
19
70463
3300
์šฐ๋ฆฌ์™€ ํšŒ์‚ฌ์— ๋ง‰๋Œ€ํ•œ ์˜ํ–ฅ์„ ์ฃผ๋Š” ์‚ด์ˆ˜๋ฅผ ์ €์งˆ๋ €์„ ๋•Œ๋„ ๊ทธ๋ ‡์Šต๋‹ˆ๋‹ค.
01:13
on us and our companies --
20
73797
1400
01:15
anything from a simple annoyance,
21
75230
1867
์„ฑ๊ฐ€์‹  ์‚ฌ์†Œํ•œ ์‹ค์ˆ˜์—์„œ
01:17
to taking a lot of time to fix,
22
77130
2167
์ˆ˜์ •์— ๋งŽ์€ ์‹œ๊ฐ„์ด ํ•„์š”ํ•œ ์‹ค์ˆ˜๋‚˜
01:19
to costing us and our employers a lot of money.
23
79330
3633
๋ง‰๋Œ€ํ•œ ๋น„์šฉ์ด ํ•„์š”ํ•œ ๊ฒฝ์šฐ์— ์ด๋ฅด๊ธฐ๊นŒ์ง€ ๋ง์ด์ฃ .
01:23
Despite billions of dollars that companies spend on cybersecurity,
24
83630
4467
๊ธฐ์—…์ด ์‚ฌ์ด๋ฒ„๋ณด์•ˆ์— ์ˆ˜์‹ญ ์–ต์„ ๋“ค์˜€์Œ์—๋„ ๋ถˆ๊ตฌํ•˜๊ณ ,
01:28
practitioners like me see the same problems over and over again.
25
88130
4500
์ € ๊ฐ™์€ ์ „๋ฌธ๊ฐ€๋“ค์€ ๊ฐ™์€ ๋ฌธ์ œ๋ฅผ ๊ณ„์†ํ•ด์„œ ๋ฐœ๊ฒฌํ•ฉ๋‹ˆ๋‹ค.
01:32
Let me give you some examples.
26
92663
1800
์˜ˆ๋ฅผ ๋“ค์–ด ๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.
01:35
The 2015 hack of Ukrainian utilities
27
95330
3033
2015๋…„ ์šฐํฌ๋ผ์ด๋‚˜์— ์žˆ์—ˆ๋˜ ์ „๋ ฅ์‹œ์„ค ํ•ดํ‚น์œผ๋กœ
01:38
that disconnected power for 225,000 customers
28
98397
3766
225,000๊ฐœ ๊ณ ๊ฐ๋“ค์˜ ์ „๊ธฐ ๊ณต๊ธ‰์ด ๋Š๊ฒผ๊ณ 
01:42
and took months to restore back to full operations
29
102197
3666
๋ณต๊ตฌ์—๋งŒ ๋ช‡ ๋‹ฌ์ด ๊ฑธ๋ ธ์Šต๋‹ˆ๋‹ค.
01:45
started with a phishing link.
30
105897
2100
ํ”ผ์‹ฑ ์‚ฌ๊ธฐ ๋งํฌ๋ฅผ ํ†ตํ•œ ํ•ดํ‚น์ด์—ˆ์ฃ .
01:48
By the way, 225,000 customers is a lot more 225,000 people.
31
108030
5567
ํ•˜์ง€๋งŒ 225,000๊ฐœ ๊ณ ๊ฐ ์ˆ˜์— ๋น„ํ•ด ํ”ผํ•ด์ž ์ˆ˜๋Š” ๊ทธ ์ด์ƒ์ž…๋‹ˆ๋‹ค.
01:53
Customers can be anything from an apartment building
32
113630
2700
๊ณ ๊ฐ์€ ์•„ํŒŒํŠธ ๋นŒ๋”ฉ์—์„œ๋ถ€ํ„ฐ
01:56
to an industrial facility
33
116363
1400
์‚ฐ์—… ์‹œ์„ค,
01:57
to a shopping mall.
34
117797
1433
์‡ผํ•‘๋ชฐ๊นŒ์ง€ ๋‹ค์–‘ํ•˜๋‹ˆ๊นŒ์š”.
01:59
The 2017 data breach of Equifax
35
119263
3100
2017๋…„ ์—ํ€ดํŒฉ์Šค์‚ฌ์˜ ์ •๋ณด ์œ ์ถœ ์‚ฌ๊ฑด์œผ๋กœ
02:02
that exposed personally identifiable information
36
122363
2834
๊ฐœ์ธ์ •๋ณด๋ฅผ ๋„๋‚œ๋‹นํ•œ ์‚ฌ๋žŒ๋งŒ
02:05
of 140 million people
37
125230
2433
1์–ต4์ฒœ๋งŒ ๋ช…์— ๋‹ฌํ•˜๊ณ 
02:07
and may ultimately cost Equifax something on the order of 1.4 billion dollars:
38
127663
6334
์—ํ€ดํŒฉ์Šค์‚ฌ๋Š” 14์–ต ๋‹ฌ๋Ÿฌ์— ๋‹ฌํ•˜๋Š” ์†์‹ค์„ ์ž…๊ฒŒ ๋  ๊ฒƒ์ž…๋‹ˆ๋‹ค.
02:14
that was caused by an exploitation of a well-known vulnerability
39
134030
3500
๊ทธ๊ฒƒ์€ ์ด๋ฏธ ์ž˜ ์•Œ๋ ค์ง„ ์ทจ์•ฝ์„ฑ์„ ์ด์šฉํ•œ ๊ฒƒ์ด์—ˆ์Šต๋‹ˆ๋‹ค.
02:17
in the company's customer consumer complaint portal.
40
137563
2934
๊ทธ ๊ธฐ์—…์˜ ๊ณ ๊ฐ ๋ถˆ๋งŒ ๊ฒŒ์‹œํŒ์— ์ด๋ฏธ ์˜ฌ๋ผ์˜จ ๋‚ด์šฉ์ด์—ˆ์ฃ .
02:21
Fundamentally, this is about technology and innovation.
41
141563
4100
์ด๊ฒƒ์€ ๊ทผ๋ณธ์ ์œผ๋กœ ๊ธฐ์ˆ ๊ณผ ํ˜์‹ ์— ๊ด€ํ•œ ๊ฒƒ์ž…๋‹ˆ๋‹ค.
02:25
Innovation is good; it makes our lives better.
42
145697
3000
ํ˜์‹ ์€ ์ข‹์Šต๋‹ˆ๋‹ค. ์šฐ๋ฆฌ ์‚ถ์„ ๋” ์ข‹๊ฒŒ ๋งŒ๋“œ๋‹ˆ๊นŒ์š”.
02:28
Most of the modern cars we drive today are fundamentally computers on wheels.
43
148697
6033
์˜ค๋Š˜๋‚  ์šฐ๋ฆฌ๊ฐ€ ํƒ€๊ณ  ๋‹ค๋‹ˆ๋Š” ์ตœ์‹  ์ž๋™์ฐจ๋“ค ๋Œ€๋ถ€๋ถ„์€
๋ฐ”ํ€ด ๋‹ฌ๋ฆฐ ์ปดํ“จํ„ฐ์ž…๋‹ˆ๋‹ค.
02:34
They tell us where to go to avoid traffic, when to take them in for maintenance
44
154763
4834
๊ตํ†ตํ˜ผ์žก์„ ํ”ผํ•ด ์–ด๋””๋กœ ๊ฐ€์•ผํ•˜๋Š”์ง€, ์–ธ์ œ ์ˆ˜๋ฆฌ๊ฐ€ ํ•„์š”ํ•œ์ง€ ์•Œ๋ ค์ฃผ๊ณ 
02:39
and then give us all kinds of modern-day conveniences.
45
159630
3200
๋งŽ์€ ์ตœ์‹ ์˜ ํŽธ์˜์„ฑ๋“ค์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.
02:42
Many people use connected medical devices like pacemakers
46
162863
3434
๋งŽ์€ ์‚ฌ๋žŒ๋“ค์ด ๋ชธ์— ์—ฐ๊ฒฐ๋œ ์˜๋ฃŒ ์žฅ์น˜๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.
์‹ฌ๋ฐ•์กฐ์ ˆ๊ธฐ์™€ ์ธ์Š๋ฆฐ ์ฃผ์‚ฌ๊ธฐ๊ฐ€ ์žˆ๋Š” ๋‹น๋‡จ ๊ฐ์‹œ ์žฅ์น˜๊ฐ™์€ ๊ฒƒ๋“ค์ด์š”.
02:46
and glucose monitors with insulin pumps.
47
166330
2300
02:49
These devices make these people's lives better
48
169197
2533
์ด๋Ÿฐ ์žฅ์น˜๋“ค์€ ์šฐ๋ฆฌ ์‚ถ์„ ๋” ์ข‹๊ฒŒ ๋งŒ๋“ค๊ณ 
02:51
and sometimes even extend their lives.
49
171763
2534
๋•Œ๋กœ๋Š” ์ƒ๋ช…์„ ์—ฐ์žฅํ•ด์ฃผ๊ธฐ๋„ ํ•ฉ๋‹ˆ๋‹ค.
02:54
But anything that can be interconnected can be hacked when it's connected.
50
174297
5533
ํ•˜์ง€๋งŒ ์ƒํ˜ธ์—ฐ๊ฒฐ๋  ์ˆ˜ ์žˆ๋Š” ์–ด๋–ค ๊ฒƒ์ด๋“  ์—ฐ๊ฒฐ๋์„ ๋•Œ ํ•ดํ‚น๋  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
03:00
Did you know that the former US Vice President Dick Cheney
51
180230
3067
์˜ˆ์ „์— ๋ฏธ๊ตญ ๋ถ€ํ†ต๋ น ๋”• ์ฒด๋‹ˆ๊ฐ€ ์‹ฌ์žฅ์ด์‹์„ ๋ฐ›๊ธฐ ์ „์—
03:03
kept his pacemaker disconnected from Wi-Fi before he received a heart transplant?
52
183330
4500
์‹ฌ๋ฐ•์กฐ์ ˆ๊ธฐ์˜ ์™€์ดํŒŒ์ด ์—ฐ๊ฒฐ์„ ๋Š์–ด๋’€๋˜ ๊ฒƒ ์•Œ๊ณ  ๊ณ„์‹ ๊ฐ€์š”?
03:07
I will let you figure out why.
53
187863
2134
์™œ ๊ทธ๋Ÿฐ์ง€ ์•Œ๋ ค๋“œ๋ฆฌ๊ฒ ์Šต๋‹ˆ๋‹ค.
03:10
In a digitally interconnected world, cyber risks are literally everywhere.
54
190830
5033
๋””์ง€ํ„ธ๋กœ ์ƒํ˜ธ์—ฐ๊ฒฐ๋œ ์„ธ์ƒ์—์„œ
์‚ฌ์ด๋ฒ„ ์œ„ํ˜‘์€ ๋ง๊ทธ๋Œ€๋กœ ์–ด๋””์—๋‚˜ ์žˆ์Šต๋‹ˆ๋‹ค.
03:16
For years, my colleagues and I have been talking about
55
196230
2800
์ง€๋‚œ ๋ช‡ ๋…„๊ฐ„, ์ €์™€ ์ œ ๋™๋ฃŒ๋“ค์€
03:19
this elusive notion of cybersecurity culture.
56
199063
2467
์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋ฌธํ™”์˜ ๋ชจํ˜ธํ•œ ๊ฐœ๋…์— ๋Œ€ํ•ด ๋‹ค๋ฃจ์–ด ์™”์Šต๋‹ˆ๋‹ค.
03:22
Cybersecurity culture is when everybody in the organization
57
202030
3367
์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๋ฌธํ™”๋Š”
ํ•œ ๊ธฐ๊ด€์— ์†ํ•œ ๋ชจ๋“  ๊ตฌ์„ฑ์›์ด ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ์„ ์ž์‹ ์˜ ์ผ์ฒ˜๋Ÿผ ์ƒ๊ฐํ•ด์„œ
03:25
believes that cybersecurity is their job,
58
205430
2733
03:28
knows what to do and what not to do
59
208197
1900
ํ•ด์•ผ ํ•  ๊ฒƒ๊ณผ ํ•˜์ง€ ๋ง์•„์•ผ ํ•  ๊ฒƒ์„ ์•Œ๊ณ 
03:30
and does the right thing.
60
210097
1333
์ ์ ˆํ•œ ์กฐ์น˜๋ฅผ ์ทจํ•˜๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค.
03:32
Unfortunately, I can't tell you which companies do this well,
61
212063
3500
์•ˆํƒ€๊น๊ฒŒ๋„ ์–ด๋–ค ๊ธฐ์—…์ด ์ž˜ ํ•˜๊ณ  ์žˆ๋Š”์ง€ ๋ง์”€๋“œ๋ฆด ์ˆ˜๋Š” ์—†์Šต๋‹ˆ๋‹ค.
03:35
because by doing so, I would put a juicy target on their backs
62
215597
3500
๋งŒ์•ฝ ๊ทธ๊ฑธ ๊ณต๊ฐœํ•˜๋ฉด ๊ทธ ๊ธฐ์—…๋“ค์€ ๋‹ฌ์ฝคํ•œ ๋จน์ž‡๊ฐ์ด ๋˜์–ด
03:39
for ambitious attackers.
63
219097
1933
์•ผ์‹ฌ์ฐฌ ํ•ด์ปค๋“ค์ด ๊ณต๊ฒฉํ•  ํ…Œ๋‹ˆ๊นŒ์š”.
03:41
But what I can do is make cybersecurity less mysterious,
64
221030
4267
ํ•˜์ง€๋งŒ ์ œ๊ฐ€ ํ•  ์ˆ˜ ์žˆ๋Š” ๊ฒƒ์€
์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ์˜ ์‹ ๋น„๊ฐ์„ ์—†์• ๊ณ 
03:45
bring it out into the open and talk about it.
65
225297
2900
๊ทธ์— ๋Œ€ํ•œ ๋…ผ์˜์˜ ์žฅ์„ ์—ฌ๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค.
03:48
There should be no mystery or secrecy within an organization.
66
228763
4600
์กฐ์ง์—์„œ๋Š” ์–ด๋– ํ•œ ์ˆจ๊น€๋„ ๋น„๋ฐ€๋„ ์—†์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.
03:54
When something is invisible and it's working,
67
234197
3800
๋ฌด์–ธ๊ฐ€ ๋ณด์ด์ง€ ์•Š๋Š” ๊ฒƒ์ด ์ž‘๋™ํ•˜๊ณ  ์žˆ์„ ๋•Œ,
03:58
we don't know that it's there until it's not there.
68
238030
3467
๊ทธ๊ฒƒ์ด ์—†์–ด์งˆ ๋•Œ๊นŒ์ง€๋Š” ๊ทธ๋Ÿฐ ๊ฒŒ ์žˆ์—ˆ๋Š”์ง€๋„ ๋ชจ๋ฆ…๋‹ˆ๋‹ค.
04:01
Kind of like toilet paper.
69
241530
2333
ํ™”์žฅ์‹ค ํœด์ง€๋‚˜ ๋งˆ์ฐฌ๊ฐ€์ง€์ฃ .
04:04
When the COVID-19 pandemic began,
70
244663
2734
์ฝ”๋กœ๋‚˜19 ๋Œ€์œ ํ–‰์ด ์‹œ์ž‘๋  ๋–„,
04:07
what has been there all of a sudden became super important
71
247430
3167
๊ฐ‘์ž๊ธฐ ์ƒ๊ฒจ๋‚˜๊ณ ๋Š” ์—„์ฒญ๋‚˜๊ฒŒ ์ค‘์š”ํ•œ ๊ฒƒ์ด ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
04:10
because we couldn't find it anywhere.
72
250597
1800
์–ด๋””์—์„œ๋„ ์ฐพ์„ ์ˆ˜ ์—†์—ˆ๊ธฐ ๋•Œ๋ฌธ์ด์ฃ .
04:12
Cybersecurity is just like that:
73
252830
2167
์‚ฌ์ด๋ฒ„๋ณด์•ˆ๋„ ๋งˆ์ฐฌ๊ฐ€์ง€์ž…๋‹ˆ๋‹ค.
04:15
when it's working, we don't know, and we don't care.
74
255030
3067
์šฐ๋ฆฌ๋Š” ๊ทธ๊ฒƒ์ด ์ž‘๋™ํ•˜๋Š” ๊ฑธ ๋ชจ๋ฅด๊ณ  ์‹ ๊ฒฝ๋„ ์“ฐ์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
04:18
But when it's not working,
75
258130
1533
ํ•˜์ง€๋งŒ ์ž‘๋™ํ•˜์ง€ ์•Š์„ ๋•Œ,
04:19
it can be really, really bad.
76
259697
2600
์ •๋ง ์ •๋ง ๋‚˜๋น ์งˆ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
04:22
Toilet paper is pretty straightforward.
77
262797
2766
ํ™”์žฅ์ง€๋Š” ๊ฝค ๋‹จ์ˆœํ•˜์ง€๋งŒ
04:25
Cybersecurity is mysterious and complex.
78
265563
3034
์‚ฌ์ด๋ฒ„๋ณด์•ˆ์€ ์ดํ•ดํ•˜๊ธฐ ํž˜๋“ค๊ณ  ๋ณต์žกํ•˜์ฃ .
04:28
And I actually think it starts with the notion of psychological safety.
79
268630
3867
์ €๋Š” ๊ทธ๊ฒƒ์ด ์‹ฌ๋ฆฌ์  ์•ˆ์ „ ๊ฐœ๋…์—์„œ ์‹œ์ž‘ํ•œ๋‹ค๊ณ  ๋ด…๋‹ˆ๋‹ค.
04:33
This notion was popularized by an organizational behavior scientist,
80
273297
3900
์ด ๊ฐœ๋…์„ ๋Œ€์ค‘ํ™”์‹œํ‚จ ๋ถ„์ด
์กฐ์งํ–‰๋™ํ•™์ž์ธ ์—์ด๋ฏธ ์—๋“œ๋จผ์Šจ์ž…๋‹ˆ๋‹ค.
04:37
Amy Edmondson.
81
277230
1733
04:38
Amy studied behavior of medical teams in high-stakes situations like hospitals,
82
278963
5167
๊ทธ๋…€๋Š” ๋ณ‘์› ๊ฐ™์€ ๊ธ‰๋ฐ•ํ•œ ์ƒํ™ฉ์—์„œ ์˜ํ•™ ํŒ€๋“ค์˜ ํ–‰๋™์„ ์—ฐ๊ตฌํ–ˆ์Šต๋‹ˆ๋‹ค.
04:44
where mistakes could be fatal.
83
284163
1734
๊ทธ๋Ÿฐ ๊ณณ์€ ์‹ค์ˆ˜๊ฐ€ ์น˜๋ช…์  ๊ฒฐ๊ณผ๋ฅผ ๋‚ณ์ฃ .
04:45
And she found out that nurses were not comfortable
84
285930
2700
๊ทธ๋ฆฌ๊ณ  ๊ทธ๋…€๋Š” ๊ฐ„ํ˜ธ์‚ฌ๋“ค์ด ์˜์‚ฌ์—๊ฒŒ ๋ญ”๊ฐ€๋ฅผ ์ œ์˜ํ•  ๋•Œ
04:48
bringing up suggestions to the doctors
85
288630
2267
๋ถˆํŽธํ•จ์„ ๋Š๋ผ๋Š”๋‹ค๋Š” ๊ฑธ ์•Œ์•˜์Šต๋‹ˆ๋‹ค.
04:50
because of the fear of questioning authority.
86
290897
2233
๊ถŒ์œ„์— ๋„์ „ํ•˜๋Š” ๊ฒƒ์— ๋Œ€ํ•œ ๊ณตํฌ๊ฐ ๋•Œ๋ฌธ์ด์ฃ .
04:53
Amy helped improve medical teams
87
293797
2600
์—์ด๋ฏธ๋Š” ์˜๋ฃŒํŒ€ ๊ฐœ์„ ์„ ํ†ตํ•ด
04:56
to make nurses more comfortable bringing up suggestions to the doctors
88
296430
3700
๊ฐ„ํ˜ธ์‚ฌ๋“ค์ด ํ™˜์ž ์น˜๋ฃŒ์— ๋Œ€ํ•ด ์˜์‚ฌ์—๊ฒŒ ๋” ํŽธํ•˜๊ฒŒ ์ œ์˜ํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ–ˆ์Šต๋‹ˆ๋‹ค.
05:00
for patient treatment
89
300130
1200
05:01
without the fear of being scolded or demeaned.
90
301330
3067
์•ผ๋‹จ ๋งž๊ฑฐ๋‚˜ ์ฐฝํ”ผ๋‹นํ•˜๋Š” ๋‘๋ ค์›€ ์—†์ด ๋ง์ด์ฃ .
05:04
For that to happen, doctors needed to listen and be receptive --
91
304397
3566
์ด๋ฅผ ๊ฐ€๋Šฅ์ผ€ ํ•˜๋ ค๋ฉด, ์˜์‚ฌ๋Š” ๋“ฃ๊ณ  ๋ฐ›์•„๋“ค์ผ ์ค„ ์•Œ์•„์•ผ ํ•ฉ๋‹ˆ๋‹ค.
05:07
without judging.
92
307997
1200
๋ฏธ๋ฆฌ ํŒ๋‹จํ•˜์ง€ ์•Š๊ณ  ๋ง์ด์ฃ .
05:10
Psychological safety is when everybody is comfortable speaking up
93
310363
4134
์‹ฌ๋ฆฌ์  ์•ˆ์ •์€ ๋ชจ๋‘๊ฐ€ ํŽธํ•˜๊ฒŒ ๋งํ•˜๊ณ 
05:14
and pointing things out.
94
314530
1700
ํŽธํ•˜๊ฒŒ ์ง€์ ํžฃ ์ˆ˜ ์žˆ์„ ๋•Œ ์ƒ๊น๋‹ˆ๋‹ค.
05:17
I want cybersecurity to be the same.
95
317097
2733
์ €๋Š” ์‚ฌ์ด๋ฒ„๋ณด์•ˆ๋„ ๊ฐ™์•˜์œผ๋ฉด ํ•ฉ๋‹ˆ๋‹ค.
05:19
And I want cybersecurity practitioners to be comfortable bringing suggestions up
96
319863
4034
๊ทธ๋ฆฌ๊ณ  ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ์ข…์‚ฌ์ž๋“ค์ด ํŽธํ•˜๊ฒŒ ์˜๊ฒฌ์„ ์ œ์‹œํ•˜๋ฉด ์ข‹๊ฒ ์Šต๋‹ˆ๋‹ค.
05:23
to senior executives or software developers,
97
323930
2867
๊ณ ์œ„ ์ž„์›๋“ค์ด๋‚˜ ์†Œํ”„ํŠธ์›จ์–ด ๊ฐœ๋ฐœ์ž๋“ค์—๊ฒŒ์š”.
05:26
without being dismissed as those people who continue to talk about
98
326830
3900
๊ทธ๋“ค์—๊ฒŒ ํ•ด๊ณ ๋‹นํ•˜๋Š” ์ผ๋„ ์—†์œผ๋ฉด ์ข‹๊ฒ ์Šต๋‹ˆ๋‹ค.
๊ทธ๋“ค์€ ๊ณตํฌ์™€ ์˜ค๋ฅ˜ ์–˜๊ธฐ๋งŒ ๋ฐ˜๋ณตํ•˜๊ณ 
05:30
horrors and errors,
99
330763
1334
05:32
and say no.
100
332130
1267
์•ˆ ๋œ๋‹ค๊ณ ๋งŒ ํ•˜์ฃ .
05:33
Not doing so is really hard
101
333963
3100
๊ทธ๋ ‡๊ฒŒ ํ•˜์ง€ ์•Š๋Š” ๊ฒƒ์ด ์ •๋ง ํž˜๋“  ์ด๋“ค๋„ ์žˆ์Šต๋‹ˆ๋‹ค.
05:37
for the individuals who are responsible for the creation of digital products
102
337097
4100
๋””์ง€ํ„ธ ์ œํ’ˆ ๊ฐœ๋ฐœ์„ ๋‹ด๋‹นํ•˜๋Š” ์‚ฌ๋žŒ๋“ค์ด์ฃ .
05:41
because fundamentally, it's about their pride and joy in their creations.
103
341230
4800
์™œ๋ƒํ•˜๋ฉด ๊ทธ๋“ค์€ ๊ฐœ๋ฐœํ•˜๋Š” ๊ฒƒ์— ๋Œ€ํ•œ ์ž๋ถ€์‹ฌ๊ณผ ์ฆ๊ฑฐ์›€์ด ์žˆ๊ธฐ ๋•Œ๋ฌธ์ž…๋‹ˆ๋‹ค.
05:46
I once tried talking to a senior software development executive
104
346597
3433
ํ•œ๋ฒˆ์€ ์†Œํ”„ํŠธ์›จ์–ด ๊ฐœ๋ฐœ ๊ณ ์œ„ ์ž„์›๊ณผ ๋Œ€ํ™”๋ฅผ ์‹œ๋„ํ•œ ์ ์ด ์žˆ์Šต๋‹ˆ๋‹ค.
05:50
about the need to do better security.
105
350063
2034
๋” ๋‚˜์€ ๋ณด์•ˆ์˜ ํ•„์š”์„ฑ์„ ์–˜๊ธฐํ•˜์ž
05:52
You know what he said?
106
352097
1233
๊ทธ๊ฐ€ ๋ญ๋ผ๊ณ  ๋งํ–ˆ์„๊นŒ์š”?
05:53
"Are you telling me we're developing insecure code?"
107
353363
2534
โ€œ์šฐ๋ฆฌ๊ฐ€ ๋ณด์•ˆ์ด ์ทจ์•ฝํ•œ ํ”„๋กœ๊ทธ๋žจ์„ ๊ฐœ๋ฐœํ•˜๊ณ  ์žˆ๋‹ค๋Š” ๋ง์ธ๊ฐ€์š”?โ€
05:56
In other words, what he heard was, "Your baby is ugly."
108
356263
3434
๋งํ•˜์ž๋ฉด, ๊ทธ์—๊ฒŒ๋Š” ์ด๋ ‡๊ฒŒ ๋“ค๋ฆฐ ๊ฑฐ์ฃ . โ€œ๋‹น์‹  ์•„๊ธฐ๋Š” ์ฐธ ๋ชป ์ƒ๊ฒผ๋„ค์š”.โ€
06:00
What if instead of focusing on what not to do,
109
360330
4400
ํ•˜์ง€ ๋ง์•„์•ผ ํ•  ๊ฒƒ์— ์ง‘์ค‘ํ•˜๋Š” ๋Œ€์‹ ์—
06:04
we focused on what to do?
110
364763
2267
ํ•ด์•ผ ํ•  ๊ฒƒ์— ์ดˆ์ ์„ ๋งž์ถ”๋ฉด ์–ด๋–จ๊นŒ์š”?
06:07
Like, how do we develop better software
111
367063
3567
์˜ˆ๋ฅผ ๋“ค์–ด, ์–ด๋–ป๊ฒŒ ํ•˜๋ฉด ๋” ๋‚˜์€ ์†Œํ”„ํŠธ์›จ์–ด๋ฅผ ๊ฐœ๋ฐœํ•˜๊ณ 
06:10
and protect our customer information at the same time?
112
370663
3534
๋™์‹œ์— ๊ณ ๊ฐ์˜ ์ •๋ณด๋ฅผ ๋ณดํ˜ธํ•  ์ˆ˜ ์žˆ์„์ง€์— ๋Œ€ํ•ด์„œ์š”.
06:14
Or how do we make sure that our organization is able to operate
113
374230
4433
๋˜๋Š” ์–ด๋–ป๊ฒŒ ํ•˜๋ฉด ์šฐ๋ฆฌ์˜ ์กฐ์ง์ด ์ž˜ ๋Œ์•„๊ฐˆ์ง€์— ๋Œ€ํ•ด์„œ์š”.
06:18
in crisis, under attack or in an emergency?
114
378697
2766
์œ„๊ธฐ, ํ•ดํ‚น ๊ณต๊ฒฉ ๋˜๋Š” ๋น„์ƒ์ƒํ™ฉ์—์„œ ๋ง์ด์ฃ .
06:21
And what if we reward good things that people do in cybersecurity in some way
115
381863
4067
๊ทธ๋ฆฌ๊ณ  ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์ข…์‚ฌ์ž๋“ค์˜ ์„ฑ๊ณผ์— ์–ด๋–ค ์‹์œผ๋กœ๋“  ๋ณด์ƒ์„ ์ฃผ๊ณ 
06:25
and encourage them to do so,
116
385963
1600
์ผ์„ ์ž˜ ํ•˜๋„๋ก ๊ฒฉ๋ คํ•˜๋ฉด ์–ด๋–จ๊นŒ์š”?
06:27
like reporting security incidents,
117
387597
2166
๋ณด์•ˆ ์‚ฌ๊ณ ๋ฅผ ๋ณด๊ณ ํ•˜๊ณ ,
06:29
reporting potential phishing emails,
118
389797
2566
ํ”ผ์‹ฑ ์‚ฌ๊ธฐ ์˜์‹ฌ ๋ฉ”์ผ์„ ์•Œ๋ฆฌ๊ฑฐ๋‚˜,
06:32
or finding and fixing software security bugs
119
392363
3500
์ž์‹ ์ด ๊ฐœ๋ฐœํ•œ ์†Œํ”„ํŠธ์›จ์–ด์˜ ์˜ค๋ฅ˜๋ฅผ ์ฐพ์•„๋‚ด๊ณ 
06:35
in the software that they develop?
120
395897
1866
์ˆ˜์ •ํ•˜๋„๋ก ํ•˜๋Š” ๊ฑฐ์ฃ .
06:37
And what if we tied these good security actions to performance evaluations
121
397797
3800
๋˜ ์ด๋Ÿฌํ•œ ์šฐ์ˆ˜ํ•œ ๋ณด์•ˆ ์กฐ์น˜๋ฅผ ์—…๋ฌด ํ‰๊ฐ€์— ๋ฐ˜์˜ํ•˜๋ฉด ์–ด๋–จ๊นŒ์š”?
06:41
to make it really matter?
122
401630
1633
๊ทธ๋Ÿฌ๋ฉด ์ •๋ง ์‹ ๊ฒฝ ์“ฐ๊ฒ ์ฃ ?
06:43
I would love for us to communicate these good cybersecurity things
123
403763
4267
์ €๋Š” ํ›Œ๋ฅญํ•œ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ์— ๋Œ€ํ•ด ํ•จ๊ป˜ ์†Œํ†ตํ•˜๊ธธ ์›ํ•˜๊ณ 
06:48
and encourage them in some sort of company-wide communications
124
408063
2934
ํšŒ์‚ฌ ์ „์ฒด๊ฐ€ ์†Œํ†ตํ•˜๋„๋ก ์žฅ๋ คํ•˜๊ณ  ์‹ถ์Šต๋‹ˆ๋‹ค.
06:51
like newsletters, blogs, websites, microsites --
125
411030
2700
์†Œ์‹์ง€, ๋ธ”๋กœ๊ทธ, ์›น์‚ฌ์ดํŠธ, ๋งˆ์ดํฌ๋กœ์‚ฌ์ดํŠธ ๋“ฑ๋“ฑ
06:53
whatever we use to communicate to our organization.
126
413763
3267
์กฐ์ง๊ณผ ์†Œํ†ตํ•  ์ˆ˜ ์žˆ๋Š” ๋ชจ๋“  ์ˆ˜๋‹จ์„ ํ†ตํ•ด์„œ์š”.
06:57
What if a company announced a competition for who finds the most security bugs
127
417063
5467
ํšŒ์‚ฌ์—์„œ ๋Œ€ํšŒ ๊ฐ™์€ ๊ฑธ ์—ด๋ฉด ์–ด๋–จ๊นŒ์š”?
๋ˆ„๊ฐ€ ๋ณด์•ˆ ๋ฒ„๊ทธ๋ฅผ ๋งŽ์ด ์ฐพ์•„๋‚ด๊ณ 
07:02
and fixes them in a two-week development sprint
128
422530
3267
2์ฃผ ๊ฐœ๋ฐœ ๊ธฐ๊ฐ„ ๋‚ด์— ์˜ค๋ฅ˜๋ฅผ ๊ณ ์น˜๋Š” ๋Œ€ํšŒ ๋ง์ด์ฃ .
07:05
and then announces the winner of the competition for the quarter
129
425830
3333
๊ทธ๋ฆฌ๊ณ  ๋ถ„๊ธฐ๋ณ„๋กœ ๋Œ€ํšŒ ์šฐ์Šน์ž๋ฅผ ๋ฝ‘์•„์„œ
๊ฐ€์ƒ๊ณต๊ฐ„์˜ ํšŒ์‚ฌ ๋Œ€๊ฐ•๋‹น์—์„œ ๋ฐœํ‘œํ•˜๊ณ 
07:09
at a large company virtual town hall,
130
429197
2766
07:11
and then rewards these people, these winners, with something meaningful,
131
431963
4234
๊ทธ ์šฐ์Šน์ž๋“ค์—๊ฒŒ ์ƒ์„ ์ฃผ๋Š” ๊ฒ๋‹ˆ๋‹ค. ์˜๋ฏธ์žˆ๋Š” ๊ฒƒ๋“ค๋กœ์š”.
07:16
like a week's vacation or a bonus.
132
436230
2167
์ผ์ฃผ์ผ ๊ฐ„์˜ ํœด๊ฐ€๋ผ๋“ ๊ฐ€ ๋ณด๋„ˆ์Šค ๊ฐ™์€ ๊ฑฐ ๋ง์ด์ฃ .
07:18
Others will see the celebration and recognition,
133
438763
2834
๊ทธ๋ ‡๊ฒŒ ์ถ•ํ•˜๋ฐ›๊ณ  ์ธ์ •๋ฐ›๋Š” ๊ฑธ ๋ณด๋Š” ์‚ฌ๋žŒ๋“ค์€
07:21
and they'll want to do the same.
134
441630
1933
์ž์‹ ๋“ค๋„ ๊ทธ๋ ‡๊ฒŒ ํ•˜๊ณ  ์‹ถ์„ ๊ฒƒ์ž…๋‹ˆ๋‹ค.
07:23
In the energy industry,
135
443563
1400
์—๋„ˆ์ง€ ์‚ฐ์—…๊ณ„์—๋Š”
07:24
there is a really strong culture of safety.
136
444997
2833
์•ˆ์ „์— ๋Œ€ํ•ด ์•„์ฃผ ๊ฐ•ํ•œ ๋ฌธํ™”๊ฐ€ ์กด์žฌํ•ฉ๋‹ˆ๋‹ค.
07:27
People care about this culture, are proud of it,
137
447830
2967
์‚ฌ๋žŒ๋“ค์€ ์ด ๋ฌธํ™”์— ๊ด€์‹ฌ์„ ๊ฐ€์ง€๊ณ , ์ž๋ž‘์Šค๋Ÿฌ์›Œํ•ฉ๋‹ˆ๋‹ค.
07:30
and there is a collective reinforcement of this culture
138
450797
3466
๊ทธ๋ฆฌ๊ณ  ์ด ๋ฌธํ™”์—๋Š” ์ง‘๋‹จ์ ์ธ ๊ฐ•ํ™”๊ฐ€ ์กด์žฌํ•˜๋Š”๋ฐ,
07:34
to make sure that nobody gets hurt.
139
454297
1933
์ด๋ฅผ ๋ฐ”ํƒ•์œผ๋กœ ์ ˆ๋Œ€ ๊ทธ ๋ˆ„๊ตฌ๋„ ํ”ผํ•ด๋ฅผ ์ž…๊ฒŒ ๋‘์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
07:36
One of the ways they exhibit and keep this safety conscious culture going
140
456230
4533
์•ˆ์ „ ์ธ์‹ ๋ฌธํ™”๋ฅผ ๋“œ๋Ÿฌ๋‚ด๊ณ  ์œ ์ง€ํ•˜๋Š” ๋ฐฉ๋ฒ• ์ค‘ ํ•œ ๊ฐ€์ง€๋Š”
07:40
is by counting and visibly displaying days since the last safety incident.
141
460797
6233
๋งˆ์ง€๋ง‰ ์•ˆ์ „ ์‚ฌ๊ณ ๋กœ๋ถ€ํ„ฐ ๋‚ ์งœ๋ฅผ ์„ธ๊ณ  ๋ˆˆ์— ๋„๊ฒŒ ๊ฒŒ์‹œํ•˜๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค.
07:47
And then everybody works really hard not to have that count go back to zero
142
467663
4367
๊ทธ๋Ÿฌ๋ฉด ๋ชจ๋‘๊ฐ€ ์—ด์‹ฌํžˆ ์ผํ•˜๋ฉฐ
๊ทธ ์ˆซ์ž๊ฐ€ ๋‹ค์‹œ 0์œผ๋กœ ๋Œ์•„๊ฐ€์ง€ ์•Š๋„๋ก ๋…ธ๋ ฅํ•˜์ฃ .
07:52
because that means that somebody did get hurt.
143
472063
2500
๊ทธ๋ ‡๊ฒŒ ๋๋‹ค๋Š” ๊ฑด ๋ˆ„๊ตฐ๊ฐ€ ๋‹ค์ณค๋‹ค๋Š” ๋œป์ด๋‹ˆ๊นŒ์š”.
07:54
Cybersecurity is the same as safety.
144
474597
3133
์‚ฌ์ด๋ฒ„๋ณด์•ˆ์€ ์•ˆ์ „๊ณผ ๋˜‘๊ฐ™์Šต๋‹ˆ๋‹ค.
07:57
What if we all agree
145
477763
1634
์šฐ๋ฆฌ ๋ชจ๋‘๊ฐ€ ํ•œ๋งˆ์Œ์œผ๋กœ
07:59
to keep that count of days since the last cybersecurity incident
146
479430
3267
๋งˆ์ง€๋ง‰ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์‚ฌ๊ณ ๋กœ๋ถ€ํ„ฐ ๊ฒฝ๊ณผ์ผ์„
08:02
going on forever
147
482730
1333
์˜์›ํžˆ ์œ ์ง€ํ•˜๊ณ 
08:04
and then work really hard not to have it reset to zero?
148
484097
3200
0์œผ๋กœ ๋Œ์•„๊ฐ€์ง€ ์•Š๋„๋ก ์—ด์‹ฌํžˆ ์ผํ•˜๊ธฐ๋กœ ํ•˜๋ฉด ์–ด๋–จ๊นŒ์š”?
08:08
And then certain things are a no-no,
149
488097
2033
๊ทธ๋ฆฌ๊ณ  ์ ˆ๋Œ€ ํ•˜๋ฉด ์•ˆ ๋˜๋Š” ๊ฒƒ์„ ์ •ํ•˜๊ณ 
08:10
and we need to clearly communicate to our organizations what they are
150
490163
3434
๊ทธ๊ฒƒ๋“ค์ด ๋ฌด์—‡์ธ์ง€ ์กฐ์ง์— ๋ช…ํ™•ํ•˜๊ฒŒ ์ „๋‹ฌํ•  ํ•„์š”๊ฐ€ ์žˆ์Šต๋‹ˆ๋‹ค.
08:13
in an easily digestible and maybe even fun way,
151
493630
2867
์ดํ•ดํ•˜๊ธฐ ์‰ฝ๊ณ  ์žฌ๋ฐŒ๋Š” ๋ฐฉ์‹์œผ๋กœ์š”.
08:16
like gamification or simulations,
152
496530
2667
๊ฒŒ์ž„์ด๋‚˜ ์‹œ๋ฎฌ๋ ˆ์ด์…˜ ๊ฐ™์€ ๋ฐฉ์‹์œผ๋กœ
08:19
to make sure that people can remember this.
153
499230
2467
์‚ฌ๋žŒ๋“ค์ด ํ™•์‹คํ•˜๊ฒŒ ๊ธฐ์–ตํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•˜๋Š” ๊ฒ๋‹ˆ๋‹ค.
08:21
And if somebody does something they're not supposed to do,
154
501730
2833
๋ˆ„๊ตฐ๊ฐ€๊ฐ€ ํ•˜์ง€ ๋ง์•„์•ผ ํ•  ๊ฒƒ์„ ํ–ˆ๋‹ค๋ฉด
08:24
they should face some sort of consequences.
155
504597
2133
๊ทธ ๋Œ“๊ฐ€๋ฅผ ์น˜๋Ÿฌ์•ผ ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.
08:26
So, for example, if an employee buys equipment on Amazon or eBay
156
506763
4734
์˜ˆ๋ฅผ ๋“ค์–ด, ํ•œ ์ง์›์ด ์•„๋งˆ์กด์ด๋‚˜ ์ด๋ฒ ์ด์—์„œ ์žฅ๋น„๋ฅผ ๊ตฌ๋งคํ–ˆ๊ฑฐ๋‚˜
08:31
or uses personal Dropbox for their company business,
157
511530
3400
ํšŒ์‚ฌ ์—…๋ฌด์— ๊ฐœ์ธ์ ์œผ๋กœ ์›นํ•˜๋“œ ์„œ๋น„์Šค๋ฅผ ์‚ฌ์šฉํ•œ๋‹ค๋ฉด
08:34
then they should face some sort of consequences.
158
514963
2467
์ฒ˜๋ฒŒ์„ ๊ฐ์˜คํ•ด์•ผ ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.
08:37
And when this happens, executives should get the same treatment
159
517463
3134
๊ทธ๋ฆฌ๊ณ  ๊ทธ๋Ÿฐ ์ผ์ด ์ผ์–ด๋‚˜๋ฉด
์ž„์›๋“ค๋„ ์ผ๋ฐ˜ ์‚ฌ์›๊ณผ ๋™์ผํ•œ ์ฒ˜๋ฒŒ์„ ๋ฐ›์•„์•ผ ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.
08:40
as regular employees,
160
520630
1667
08:42
because if they don't, then people won't believe that it's real
161
522297
3000
๊ทธ๋ ‡๊ฒŒ ํ•˜์ง€ ์•Š์œผ๋ฉด, ์‚ฌ๋žŒ๋“ค์€ ์‹ค์ œ๋กœ ์ฒ˜๋ฒŒ ๋ฐ›์ง€ ์•Š๋Š”๋‹ค๊ณ  ์ƒ๊ฐํ•˜๊ณ 
08:45
and will go back to their old behaviors.
162
525330
1933
์˜ˆ์ „์˜ ํ–‰๋™์œผ๋กœ ๋Œ์•„๊ฐ€๊ธฐ ๋•Œ๋ฌธ์ž…๋‹ˆ๋‹ค.
08:47
It's OK to talk about mistakes,
163
527297
2500
์‹ค์ˆ˜๋ผ๊ณ  ํ•  ์ˆ˜๋„ ์žˆ์Šต๋‹ˆ๋‹ค.
08:49
but just like a teenager who violates the rules tells us about it,
164
529830
4033
ํ•˜์ง€๋งŒ ๊ทœ์น™์„ ์œ„๋ฐ˜ํ•œ ์‹ญ๋Œ€๊ฐ€ ์ž˜๋ชป์„ ๊ณ ๋ฐฑํ•˜๋“ฏ์ด
08:53
we appreciate that they told us about it,
165
533897
2066
์Šค์Šค๋กœ ๋ฐํžˆ๋Š” ๊ฒƒ์€ ๊ณ ๋ง™์ง€๋งŒ
08:55
but there should still be some sort of consequences.
166
535997
2433
์—ฌ์ „ํžˆ ์ผ์ข…์˜ ๋Œ“๊ฐ€๋ฅผ ์น˜๋Ÿฌ์•ผ ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.
09:00
Cybersecurity is a journey.
167
540263
2134
์‚ฌ์ด๋ฒ„๋ณด์•ˆ์€ ์—ฌ์ •์ž…๋‹ˆ๋‹ค.
09:02
It's not a destination,
168
542430
1500
๋ชฉ์ ์ง€๊ฐ€ ์•„๋‹ˆ๋ฏ€๋กœ
09:03
and we need to keep working on it.
169
543930
1933
์šฐ๋ฆฌ๋Š” ๊ณ„์†ํ•ด์„œ ๋…ธ๋ ฅํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.
09:06
I would love for us to celebrate cybersecurity people
170
546297
3133
์‚ฌ๋žŒ๋“ค์ด ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์ข…์‚ฌ์ž๋“ค์„ ๊ธฐ๋…ํ•˜๋ฉด ์ข‹๊ฒ ์Šต๋‹ˆ๋‹ค.
09:09
like the heroes that they are.
171
549430
1933
์˜์›…์ฒ˜๋Ÿผ ๋ง์ด์—์š”.
09:11
If we think about it, they are firefighters,
172
551363
2967
์ƒ๊ฐํ•ด๋ณด๋ฉด, ๊ทธ๋“ค์€ ์†Œ๋ฐฉ๊ด€๊ณผ
09:14
emergency room doctors and nurses,
173
554330
1833
์‘๊ธ‰์‹ค ์˜์‚ฌ์™€ ๊ฐ„ํ˜ธ์‚ฌ,
09:16
law enforcement, risk executives and business strategists
174
556197
3766
๋ฒ• ์ง‘ํ–‰๊ด€, ์œ„ํ—˜ ๊ด€๋ฆฌ ์ฑ…์ž„์ž์™€ ์‚ฌ์—…์ „๋žต๊ฐ€,
09:19
all in the same persona.
175
559963
1900
๊ทธ๋Ÿฐ ์‚ฌ๋žŒ๋“ค๊ณผ ๋‹ค๋ฆ„์—†์Šต๋‹ˆ๋‹ค.
09:21
And they help us protect our modern life that we like so much.
176
561897
3800
๊ทธ๋“ค์€ ์šฐ๋ฆฌ๊ฐ€ ๊ทธํ† ๋ก ์ข‹์•„ํ•˜๋Š” ํ˜„๋Œ€ ๋ฌธ๋ฌผ์„ ์ง€ํ‚ค๋Š” ๋ฐ ๋„์›€์„ ์ค๋‹ˆ๋‹ค.
09:25
They protect our identities, our inventions, our intellectual property,
177
565697
4333
์šฐ๋ฆฌ์˜ ๊ฐœ์ธ์ •๋ณด, ๋ฐœ๋ช…ํ’ˆ, ์ง€์  ์žฌ์‚ฐ,
09:30
our electric grid, medical devices,
178
570063
2400
์ „๋ ฅ๋ง๊ณผ ์˜๋ฃŒ๊ธฐ๊ธฐ,
09:32
connected cars and myriad other things.
179
572497
3500
์ปค๋„ฅํ‹ฐ๋“œ ์นด, ๊ทธ๋ฆฌ๊ณ  ์ˆ˜๋งŽ์€ ๊ฒƒ๋“ค์„ ์ง€์ผœ์ฃผ์ฃ .
09:35
And I'd like to be on that team.
180
575997
1600
์ €๋Š” ๊ทธ๋Ÿฐ ํŒ€์— ์žˆ๊ณ  ์‹ถ์Šต๋‹ˆ๋‹ค.
09:38
So let's agree that this thing is with us to stay,
181
578097
4266
๊ทธ๋Ÿฌ๋‹ˆ ๊ทธ๊ฒƒ์ด ์šฐ๋ฆฌ์™€ ํ•จ๊ป˜ํ•œ๋‹ค๋Š” ๊ฒƒ์„ ์ธ์ •ํ•ฉ์‹œ๋‹ค.
09:42
let's create a safe environment to learn from our mistakes,
182
582363
3600
์šฐ๋ฆฌ์˜ ์‹ค์ˆ˜๋กœ๋ถ€ํ„ฐ ๊ตํ›ˆ์„ ์–ป์–ด ์•ˆ์ „ํ•œ ํ™˜๊ฒฝ์„ ๋งŒ๋“ญ์‹œ๋‹ค.
09:45
and let's commit to making things better.
183
585963
2367
๋” ๋‚˜์€ ํ™˜๊ฒฝ์„ ๋งŒ๋“ค๊ฒ ๋‹ค๊ณ  ์•ฝ์†ํ•ฉ์‹œ๋‹ค.
09:48
Thank you.
184
588363
1267
๊ฐ์‚ฌํ•ฉ๋‹ˆ๋‹ค.
์ด ์›น์‚ฌ์ดํŠธ ์ •๋ณด

์ด ์‚ฌ์ดํŠธ๋Š” ์˜์–ด ํ•™์Šต์— ์œ ์šฉํ•œ YouTube ๋™์˜์ƒ์„ ์†Œ๊ฐœํ•ฉ๋‹ˆ๋‹ค. ์ „ ์„ธ๊ณ„ ์ตœ๊ณ ์˜ ์„ ์ƒ๋‹˜๋“ค์ด ๊ฐ€๋ฅด์น˜๋Š” ์˜์–ด ์ˆ˜์—…์„ ๋ณด๊ฒŒ ๋  ๊ฒƒ์ž…๋‹ˆ๋‹ค. ๊ฐ ๋™์˜์ƒ ํŽ˜์ด์ง€์— ํ‘œ์‹œ๋˜๋Š” ์˜์–ด ์ž๋ง‰์„ ๋”๋ธ” ํด๋ฆญํ•˜๋ฉด ๊ทธ๊ณณ์—์„œ ๋™์˜์ƒ์ด ์žฌ์ƒ๋ฉ๋‹ˆ๋‹ค. ๋น„๋””์˜ค ์žฌ์ƒ์— ๋งž์ถฐ ์ž๋ง‰์ด ์Šคํฌ๋กค๋ฉ๋‹ˆ๋‹ค. ์˜๊ฒฌ์ด๋‚˜ ์š”์ฒญ์ด ์žˆ๋Š” ๊ฒฝ์šฐ ์ด ๋ฌธ์˜ ์–‘์‹์„ ์‚ฌ์šฉํ•˜์—ฌ ๋ฌธ์˜ํ•˜์‹ญ์‹œ์˜ค.

https://forms.gle/WvT1wiN1qDtmnspy7