Mai Kraft appointed Director of RIA's National Cyber Security Centre

03.08.2026 | 13:26

As of 1 August, Mai Kraft has assumed the position of Director of the National Cyber Security Centre of Estonia (NCSC-EE) at the Estonian Information System Authority (RIA), as well as Deputy Director General for Cyber Security. She succeeds Gert Auväärt, who has been appointed Ambassador of Estonia to Canada.

Mai Kraft is a recognised cyber security expert and executive with extensive experience in technology and information security. She holds a Master's degree in Cyber Defence from Tallinn University of Technology. Over the past eight years, Kraft has served as Chief Information Security Officer at Elisa Estonia, where she was responsible for the company's overall cyber security function, including cyber security strategy, risk management, regulatory compliance, incident response and the operation of the information security management system across the organisation. She is also an active advocate for cyber security and has an extensive network within the cyber security community.

According to RIA Director General Joonas Heiter, Mai Kraft was selected through a highly competitive recruitment process. A total of 22 candidates applied for the open competition, with several highly qualified cyber security and strategic leadership experts advancing to the final round.

"As cyber threats become increasingly complex and evolve at an ever-faster pace, we need strong leaders who can anticipate both today's and tomorrow's challenges, foster cooperation with partners in Estonia and internationally, and lead the long-term development of the field. I am confident that Mai's expertise, experience and dedication will strengthen both RIA and Estonia's overall cyber resilience," said Heiter.

"Estonia's success as a digital nation cannot rely on innovation alone. Trust, crisis preparedness and the ability to respond to rapidly evolving cyber threats are equally essential," said Mai Kraft, upon taking up her new role as Director of RIA's National Cyber Security Centre.

"Cyber security must be an integral part of both technological innovation and the continuity of government. Achieving this requires systematically modernising critical digital infrastructure, preparing for the quantum era, strengthening the capabilities of both the public and private sectors to securely adopt new technologies, and making secure behaviour the natural choice for people. Security must be built into our systems by design."

Karit Kaasik

Head of Communication Department

open graph imagesearch block image