Books

Published Books

Carl B. Johnson has authored 16 influential books on cybersecurity compliance and best practices, drawing from his extensive experience as a CISO and compliance expert.

Featured Books

ITAR and Export Controls Fundamentals book cover

ITAR and Export Controls Fundamentals: A Guide for Compliance Managers

A comprehensive guide for compliance managers navigating International Traffic in Arms Regulations.

ITAR Compliance Made Easy book cover

ITAR Compliance Made Easy: A Practical Guide to Program Development

A step-by-step approach to developing and implementing effective ITAR compliance programs and procedures.

HIPAA Privacy & Security Compliance for Healthcare Administrators book cover

HIPAA Privacy & Security Compliance for Healthcare Administrators

Essential guidance on implementing HIPAA privacy and security requirements for healthcare organizations and administrators.

Shielding Your Business From Data Breaches book cover

Shielding Your Business From Data Breaches: A Comprehensive Guide to Data Security

Strategies and frameworks for protecting your organization from data breaches through proactive security measures.

CUI for Federal Contractors book cover

CUI for Federal Contractors

Practical methods for implementing data classification and protection systems for Controlled Unclassified Information.

CMMC 2.0 For DOD & Federal Contractors book cover

CMMC 2.0 For DOD & Federal Contractors

Creating and implementing DFARS/NIST 800-171 processes, policies, and procedures to achieve CMMC 2.0 compliance.

Mastering Microsoft GCC & GCC High book cover

Mastering Microsoft GCC & GCC High: Preparing Your Microsoft Environment For Federal Compliance

A guide for securing Microsoft GCC & GCC High environments to meet Federal security requirements for sensitive data protection.

Implementing Compliance and Governance with SharePoint book cover

Implementing Compliance and Governance with SharePoint: Governance Guidance Based on Real World Customer Experiences

A must-have resource for CIOs and departmental managers implementing SharePoint governance, with step-by-step guidance on creating air-tight governance plans and aligning with compliance standards.

CISSP Domain Series

An eight-book series covering every CISSP exam domain, with real-world examples, memory tricks, and 250 practice questions per book.

CISSP Domain 1 Security & Risk Management Exam Prep book cover

CISSP 2025 Domain 1: Security & Risk Management Exam Prep

Master governance, risk assessment, and compliance fundamentals with practical examples and comprehensive practice questions for CISSP Domain 1 certification success.

CISSP Domain 2 Asset Security Exam Prep book cover

CISSP 2025 Domain 2: Asset Security Exam Prep

Learn data classification, handling, and retention strategies with real-world scenarios and extensive practice questions for CISSP Domain 2 mastery.

CISSP Domain 3 Security Architecture and Engineering Exam Prep book cover

CISSP 2025 Domain 3: Security Architecture and Engineering Exam Prep

Understand security models, system capabilities, and vulnerability assessments through practical examples and comprehensive practice questions for Domain 3 success.

CISSP Domain 4 Communication and Network Security Exam Prep book cover

CISSP 2025 Domain 4: Communication and Network Security Exam Prep

Master network protocols, secure communications, and network security controls with hands-on examples and extensive practice questions for CISSP Domain 4.

CISSP Domain 5 Identity and Access Management Exam Prep book cover

CISSP 2025 Domain 5: Identity and Access Management Exam Prep

Explore identity management, access provisioning, and authentication strategies with practical scenarios and comprehensive practice questions for Domain 5 mastery.

CISSP Domain 6 Security Assessment and Testing Exam Prep book cover

CISSP 2025 Domain 6: Security Assessment and Testing Exam Prep

Learn security testing methodologies, vulnerability assessments, and audit procedures with real-world examples and extensive practice questions for Domain 6.

CISSP Domain 7 Security Operations Exam Prep book cover

CISSP 2025 Domain 7: Security Operations Exam Prep

Master incident response, logging, monitoring, and recovery procedures with hands-on examples and comprehensive practice questions for CISSP Domain 7 success.

CISSP Domain 8 Software Development Security Exam Prep book cover

CISSP 2025 Domain 8: Software Development Security Exam Prep

Understand secure software development lifecycle, application security, and DevSecOps practices with practical examples and extensive questions for Domain 8 mastery.