primedefence
Daute Delgado

Daute Delgado

CEO & Co-founder, Primedefence

Daute Delgado is CEO and co-founder of Primedefence. He spent more than a decade defending airlines, managed SOCs and international organizations, first as an operator and later leading security teams.

He is an Associate C|CISO and a Silver Winner at the 2021 Cyber Security Excellence Awards. He also founded Unihackers, Primedefence's sister cybersecurity school, where SOC analysts train on the same premise: what gets measured gets better.

At Primedefence he leads every SOC-CMM assessment: scope, interviews, calibration and the executive readout. Primedefence is listed as a Silver Support Partner in the official SOC-CMM report, operates no SOC and sells no tooling.

  • Associate C|CISO
  • Silver Winner, Cyber Security Excellence Awards 2021
  • 10+ years in security operations

Articles by Daute Delgado

All articles
SOC-CMM

SOC Maturity Report 2026: the numbers that matter

The second annual SOC-CMM report in figures: domain and regional averages, the 0.6-point self-assessment gap, analyst retention, automation versus AI, and the real state of SOC certification.

2026-06-09
MSSP selection

Independent MSSP and MDR selection: the buyer-side playbook

An eight-step, evidence-led process for choosing and overseeing an MSSP or MDR provider from the buyer's side.

2026-06-12
Board & exec

10 Board Questions About the SOC Every Director Should Ask

A short list of questions that separates a prepared CISO from one who is improvising.

2026-06-12
AI governance

EU AI Act high-risk checklist: readiness before August 2026

What providers and deployers of high-risk AI systems must have in place before the August 2026 deadline, item by item, with the evidence each obligation requires.

2026-06-12
EU regulation

NIS2 vs DORA: 7 differences that matter for your SOC

They overlap in intent but diverge in scope, precedence, governance, third parties, testing, reporting and penalties. How to sequence them without duplicating work.

2026-06-12
Methodology

SOC-CMM vs CMMI for Cyber: an honest comparison

Two maturity models, two adoption curves. Which one your board will actually defend.

2026-06-12
Methodology

SOC-CMM vs SIM3: SOC maturity versus CSIRT maturity

Two similar-looking models for different problems. How not to confuse a CSIRT with a SOC, and how to pick the right model for each team.

2026-06-12
SOC-CMM

SOC-CMM 2026: the complete guide to the five domains, continuous scoring and certification

What SOC-CMM v2.4 measures, how it scores maturity and capability, what the 2026 benchmark data shows, and how to turn the questionnaire into a board-defensible roadmap and a certification path.

2026-01-19
SOC-CMM

Cyber insurance evidence pack 2026: what to include

What an underwriting evidence pack contains, why an independent SOC-CMM assessment strengthens your underwriting and claims position, and how to maintain it year over year.

2026-06-12
SOC-CMM

Common SOC-CMM assessment mistakes and how to avoid them

The patterns that erode assessment quality and board confidence. How to catch them before the report is written.

2026-06-12
SOC-CMM

SOC Metrics 2026: What Matters to a CISO, What Does Not

Beyond MTTD and MTTR. How to build a dashboard a CISO can defend in front of the board.

2026-06-12
EU regulation

DORA Article 26 TLPT: scope, cycle and SOC readiness

Who must run threat-led penetration tests under DORA, on what cycle, how TIBER-EU shapes the exercise, and why SOC maturity decides whether the test is useful.

2026-06-12