Justin Leach

Justin Leach

Justin Leach serves as a Virtual CISO with Compass IT Compliance, where he partners with organizations across diverse industries to evaluate and strengthen their information security programs and cybersecurity initiatives. He conducts comprehensive security assessments to identify vulnerabilities, quantify risk exposure, and develop strategic roadmaps that align security investments with business objectives. Drawing on his extensive background in the financial sector—where he held progressive roles spanning information technology, security, fraud prevention, and enterprise risk management—Justin brings a uniquely holistic perspective to cybersecurity governance, combining technical expertise with a deep understanding of regulatory compliance and operational risk.

Posts by Justin Leach

CMMC Final Rule Compliance: A Guide for Defense Contractors

CMMC Final Rule

Since its publication nearly two months ago, the Cybersecurity Maturity Model Certification (CMMC) Final Rule has moved from anticipation to implementation. For defense contractors, compliance is no longer theoretical. The rule is now shaping how the Department of Defense (DoD) manage …

Read Story

Tug-of-War: Balancing Security and Efficiency

Tug of War

I find it helpful when explaining principles to think in extremes. So, when it comes to the principle of securing a system, what is the most secure? Let us use this computer I am typing on as an example. Off. That is the most secure. Let us even take the battery out, unplug everything …

Read Story

Here's Why You Need A Password Manager

Password Manager

My mother bragged to me once that she is very good with technology. When I (her free tech support) raised an eyebrow at this, she pulled out a notepad that had handwritten notes on how to change the TV input from cable to the DVD player.

Read Story

Subscribe by email