KraftCERT
KraftCERT is an independent Norwegian non-profit sector CERT providing OT/ICS cybersecurity services — vulnerability monitoring, threat intelligence, detection, and incident response — to the power, petroleum, process industry, water & wastewater, and energy recovery sectors in Norway.
- Company typePrivate
- Founded2014
- HeadquartersOslo, Norway
- Headcount1–10
- GTM typeB2B
- OfferingServices
What KraftCERT does
KraftCERT (legal entity KraftCERT AS, also operating as InfraCERT) is an independent non-profit corporation headquartered in Oslo, Norway, founded in 2014. It functions as a sector Computer Emergency Response Team (CERT) and Information Sharing and Analysis Center (ISAC) for Norwegian critical infrastructure, holding formal alerting responsibility to Norwegian authorities for serious cyber incidents in the electric power and petroleum sectors. Its mission is to secure process control systems (SCADA/ICS/OT environments) against digital attacks across the power, petroleum, process industry, water & wastewater, and energy recovery sectors.
The organization delivers seven integrated core services through a shared incident reporting infrastructure: vulnerability monitoring (alerts from vendors, security organizations, and independent actors), threat intelligence (verification and criticality assessment of attack alerts), detection services (early identification of malicious activity in member networks), incident response coordination (including access to mnemonic's mIRT professional IR team), independent security counselling, emergency drill facilitation, and targeted training. Incident reporting is supported through a dedicated portal supporting email, phone, web form, chat, IRC, PGP encryption, and a secure data sharing portal for larger transfers. KraftCERT is a full member of FIRST and a Trusted Introducer certified incident response team.
KraftCERT operates on a subscription/membership revenue model across five Norwegian industrial sectors, with pricing not publicly disclosed. The organization is part of the Norwegian national response organization and the Norwegian Sector Response Network, contributing to national threat assessments. It is led by CEO (Daglig leder) Martin Bore, operates with 1-10 employees, and markets primarily through its annual KraftCERT Forum and participation in international IR/security community forums.
KraftCERT firmographics
Firmographics- Name
- KraftCERT
- Legal name
- KraftCERT AS
- Website
- https://kraftcert.no
- Company type
- Private
- Founded year
- 2014
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- KraftCERT is an independent Norwegian non-profit sector CERT providing OT/ICS cybersecurity services — vulnerability monitoring, threat intelligence, detection, and incident response — to the power, petroleum, process industry, water & wastewater, and energy recovery sectors in Norway.
- Ownership category
- akta.pro rank
KraftCERT industry classification
Industry- Product category
- Critical Infrastructure Cybersecurity Services
- NAICS
- Computer Systems Design and Related Services (5415)
- SIC
- Electric, Gas & Sanitary Services (4900), Services-Membership Organizations (8600)
- akta.pro primary industry
- Cybersecurity for OT / SCADA (Monitoring, Access Control, Incident Response) (EUAJAFAJ)
Keywords
Where KraftCERT is headquartered
LocationHeadquarters
- HQ city
- Oslo
- HQ country
- Norway
- HQ region
- Europe
Offices1 record
Markets served
KraftCERT business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Infrastructure, Marketing or Sales
Revenue model
- Sector Membership Fees: KraftCERT operates as an independent non-profit corporation with membership-based revenue from its constituent sectors. The organization serves as sector CERT for power and petroleum sectors, and provides services to process industry, water & wastewater, and energy recovery sectors. The membership model provides ongoing access to vulnerability monitoring, threat intelligence, incident response coordination, and security counselling services.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels4 records
KraftCERT product offering
Product offeringCore offering
KraftCERT is the Norwegian non-profit sector CERT (Computer Emergency Response Team) and ISAC that delivers cybersecurity services for process control systems (SCADA/ICS/OT) in critical infrastructure. Its core offerings span seven integrated services: vulnerability monitoring, threat intelligence, detection, incident response, independent security counselling, emergency drills, and training, delivered to member organizations in the power, petroleum, process industry, water & wastewater, and energy recovery sectors. The organization also holds formal alerting responsibility to Norwegian authorities for serious cyber incidents in the power and petroleum sectors.
Product overview
KraftCERT/InfraCERT operates as a unified cybersecurity service organization providing ISAC (Information Sharing and Analysis Center) and IRT (Incident Response Team) services for process control systems. The portfolio consists of seven integrated core services: Vulnerability Monitoring, Threat Intelligence, Detection, Incident Response, Counselling, Emergency Drills, and Training. These services are delivered through a shared incident reporting platform and are targeted at the power, petroleum, process industry, water & wastewater, and energy recovery sectors in Norway. The organization serves as the sector CERT for power and petroleum sectors and is part of the Norwegian national response organization.
Differentiator
Problem solved
Functional benefit
Products and services
- Vulnerability Monitoring (Sårbarhetsovervåkning) Provides vulnerability alerts and advisories for products and solutions used by members, sourced from manufacturers, security organizations, and independent actors. Includes strategic guidance on vulnerability handling and mitigation for OT/ICS environments.
- Threat Intelligence (Trusseletterretning) Collects and analyzes attack alerts from security partners and from companies nationally and internationally that are under attack. Provides threat assessments with severity ratings and recommended concrete countermeasures to members, verifying alerts to deliver accurate and timely information.
- Detection Services (Deteksjon) Supports early detection of malicious activity inside member company networks and provides understanding of security compromises, addressing the fact that perimeter security is a moving target as attackers become more resourced and network services expand.
- Incident Response (Hendelseshåndtering) Helps member companies improve incident handling capabilities, facilitates incident response plan development, and provides advisory on logging, collection, correlation, and analysis of suspicious documents or links. Through a partner agreement, members can escalate to mIRT (mnemonic's professional incident response team) for serious incidents.
- Counselling / Advisory (Rådgivning) Provides independent advisory on security solutions, helping members select the right solutions for different purposes based on both economic and security considerations. Counselling topics are member-driven.
- Emergency Drills (Øvelser) Assists member companies with advisory or active participation in local emergency drills, including acting as a response cell when desired by the member. Supports incident preparedness for OT/ICS environments.
- Training (Kursing) Offers selected courses for the constituency in incident response, emergency drill organization, and specific security topics relevant to OT/ICS operators.
Companies that use KraftCERT
Customer profileNamed customers5 records
Segments5 records
Ideal customer profiles5 records
KraftCERT technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature5 records
KraftCERT partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- mIRT (mnemonic professional incident response team)coreEmergency backing agreement with mIRT, mnemonic's professional incident response team. Through the InfraCERT/KraftCERT agreement, member organizations can access mIRT services during serious incidents, providing additional incident response capacity beyond KraftCERT's own capabilities.
Scale indicators3 records
Recent moves5 records
Expansion highlights5 records
KraftCERT competitors and assessment
Company assessmentDirect peers
- Claroty: OT/ICS cybersecurity vendor with deep focus on critical infrastructure (power, oil & gas, water, manufacturing). Directly comparable in targeting the same industrial customer base with overlapping OT visibility and vulnerability offerings.
- Nozomi Networks: OT and IoT cybersecurity platform serving power, oil & gas, and water utilities. Comparable due to its mission to deliver OT threat detection and asset visibility to the same vertical customers KraftCERT supports.
- E-ISAC: Electricity Information Sharing and Analysis Center serving the North American electricity sector with threat intelligence and incident coordination. Direct functional analog for the electric power sector ISAC role KraftCERT plays in Norway.
- NorCERT: Norway's national CERT operating under the Norwegian National Security Authority with responsibility for cyber incident response across public and critical infrastructure. Most comparable by geography and mandate, although NorCERT operates at the national level while KraftCERT focuses on designated sectors.
- Dragos: Commercial OT/ICS cybersecurity platform serving power, oil & gas, water, and manufacturing with threat intelligence, vulnerability management, and incident response. Comparable because it competes for the same OT-security budget from KraftCERT's member organizations.
Broad incumbents
- ICS-CERT (CISA): US federal coordination body for industrial control systems cybersecurity under CISA. Comparable as a national-level sector CERT/IR authority for critical infrastructure, although operating with a much larger mandate and broader scope than KraftCERT.
- ENISA: European Union Agency for Cybersecurity that coordinates EU-wide CSIRT cooperation and NIS2 implementation. Comparable as the broader ecosystem regulator/convener that shapes the environment in which KraftCERT and other sector CERTs operate.
- Honeywell Forge Cybersecurity: Broad industrial cybersecurity portfolio from a large incumbent OT vendor serving power, oil & gas, water, and process manufacturers. Comparable because it competes for OT-security budget across the same sectors KraftCERT's members operate in.
Others
- mnemonic AS: Norwegian cybersecurity services firm whose mIRT professional incident response team is KraftCERT's emergency backing partner. Directly comparable as a co-ecosystem actor providing IR services to overlapping critical-infrastructure customers.
Regional players
- CERT-SE: Sweden's national CERT operated within MSB. Comparable as a neighboring Nordic CERT with a sector-coordination role across critical infrastructure, but serving a different national jurisdiction.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
KraftCERT financial estimates
Financial estimateRevenue estimate
Valuation estimate
KraftCERT leadership team
Management profileNumber of profiles
Profiles1 record
KraftCERT funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
KraftCERT M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about KraftCERT
What does KraftCERT do?
KraftCERT is the Norwegian non-profit sector CERT (Computer Emergency Response Team) and ISAC that delivers cybersecurity services for process control systems (SCADA/ICS/OT) in critical infrastructure. Its core offerings span seven integrated services: vulnerability monitoring, threat intelligence, detection, incident response, independent security counselling, emergency drills, and training, delivered to member organizations in the power, petroleum, process industry, water & wastewater, and energy recovery sectors. The organization also holds formal alerting responsibility to Norwegian authorities for serious cyber incidents in the power and petroleum sectors.
Is KraftCERT a public or private company?
KraftCERT is a private company. It is classified as nonprofit foundation owned and is currently operating.
When was KraftCERT founded?
KraftCERT was founded in 2014. It employs 1 to 10 people.
Where is KraftCERT based?
KraftCERT is headquartered in Oslo, Norway, in the Europe region.
How does KraftCERT make money?
One revenue line is on record: sector Membership Fees.
Who are KraftCERT's main competitors?
Direct peers on record are Claroty, Nozomi Networks, E-ISAC, NorCERT and Dragos. Broad incumbents are ICS-CERT (CISA), ENISA and Honeywell Forge Cybersecurity. mnemonic AS is listed as an others. CERT-SE is listed as a regional player.
Does KraftCERT have an API?
No public API is recorded for KraftCERT.
What industry is KraftCERT in?
KraftCERT's product category is Critical Infrastructure Cybersecurity Services. Its primary akta.pro industry code is EUAJAFAJ, Cybersecurity for OT / SCADA (Monitoring, Access Control, Incident Response). Its NAICS code is 5415 and its SIC code is 4900.