Built for the systems that cannot fail.

Why we exist.
Why we exist.
Why we exist.
OT security is often split across IT, automation teams, vendors and individual projects. Everyone owns a part of the environment, but too rarely does anyone own the whole security picture.
That gap matters in industrial operations. Assets change, the need for remote access keeps increasing, and technical requirements increasingly affect production, safety and continuity. Managing this reality requires OT‑specific expertise, practical engineering know‑how and security discipline within the same team.
ESFABRIK was formed to close that gap: a Nordic OT cybersecurity practice for organizations that need focused ownership of operational security, not an IT-first model extended into production.
The right conversation from the start.
The right conversation from the start.
Contact the person most relevant to your topic, or simply start with any of us. We’ll take it from there.
ESFABRIK brings commercial, operational and technical context into the conversation early, so priorities are clear before OT security work begins.
Direct contact: firstname.lastname@esfabrik.fi
Direct contact: firstname.lastname@esfabrik.fi
Technical Team
ESFABRIK’s technical team brings OT security architecture, engineering and compliance expertise into client environments.
Technical Team
ESFABRIK’s technical team brings OT security architecture, engineering and compliance expertise into client environments.
Technical Team
ESFABRIK’s technical team brings OT security architecture, engineering and compliance expertise into client environments.


Kimmo Ojala
CEO
+358 40 7769 984
Cybersecurity founder and operator with long experience in security and managed services. Leads ESFABRIK’s direction and client relationships.
Kimmo Ojala
CEO
+358 40 7769 984
Cybersecurity founder and operator with long experience in security and managed services. Leads ESFABRIK’s direction and client relationships.

Juuso Järvenmäki
Business Development
+358 44 7584 408
Technology and cybersecurity professional with two decades of experience. Turns industrial security challenges into practical execution.
Juuso Järvenmäki
Business Development
+358 44 7584 408
Technology and cybersecurity professional with two decades of experience. Turns industrial security challenges into practical execution.
TO
TO
Toomas Ojala
Finance & Operations
+358 40 7414 266
Finance and operations professional focused on structure and delivery discipline. Drives commercial execution and client engagement.
Toomas Ojala
Finance & Operations
+358 40 7414 266
Finance and operations professional focused on structure and delivery discipline. Drives commercial execution and client engagement.
Four commitments behind every engagement.
One company. Full OT journey.
From first assessment through ongoing operations, the team that learns your environment stays with it. That knowledge informs every decision that follows.
One company. Full OT journey.
From first assessment through ongoing operations, the team that learns your environment stays with it. That knowledge informs every decision that follows.
One company. Full OT journey.
From first assessment through ongoing operations, the team that learns your environment stays with it. That knowledge informs every decision that follows.
OT engineering depth.
Industrial protocols, vendor platforms, safety logic, network architectures. Security decisions are grounded in the realities of industrial operations.
OT engineering depth.
Industrial protocols, vendor platforms, safety logic, network architectures. Security decisions are grounded in the realities of industrial operations.
OT engineering depth.
Industrial protocols, vendor platforms, safety logic, network architectures. Security decisions are grounded in the realities of industrial operations.
Security without disruption.
Availability is a requirement in every decision and implementation. Stronger security cannot come at the expense of operational continuity.
Security without disruption.
Availability is a requirement in every decision and implementation. Stronger security cannot come at the expense of operational continuity.
Security without disruption.
Availability is a requirement in every decision and implementation. Stronger security cannot come at the expense of operational continuity.
Regulatory clarity, audit-ready.
NIS2, ISO 27001, and IEC 62443 shape how we assess, design and deliver. We build in the required controls and evidence, then close remaining gaps.
Regulatory clarity, audit-ready.
NIS2, ISO 27001, and IEC 62443 shape how we assess, design and deliver. We build in the required controls and evidence, then close remaining gaps.
Regulatory clarity, audit-ready.
NIS2, ISO 27001, and IEC 62443 shape how we assess, design and deliver. We build in the required controls and evidence, then close remaining gaps.
Talk to the engineer who would lead your work.
Talk to the engineer who would lead your work.
Leave your details and a topic. We’ll be in touch within one business day to arrange a call.
Leave your details and a topic. We’ll be in touch within one business day to arrange a call.

