فصلنامه مطالعات مدیریت راهبردی

فصلنامه مطالعات مدیریت راهبردی

ارائه الگوی امنیت سازمان در مسیر پایداری کسب وکارها به روش تحلیل مضمون

نوع مقاله : پژوهشی

نویسندگان
1 فارغ التحصیل کارشناسی ارشد، دانشگاه صنعتی مالک اشتر، تهران، ایران
2 استادیار، گروه مهندسی صنایع دانشگاه صنعتی مالک اشتر، اصفهان، ایران
چکیده
در دنیای امروز که با پیچیدگی‌ها و چالش‌های فراوانی روبرو است، حفظ امنیت سازمانی به عنوان یکی از ارکان کلیدی در بقای هر سازمان اهمیت ویژه‌ای دارد. امنیت سازمانی نه تنها به حفاظت از اطلاعات و دارایی‌های فیزیکی سازمان می‌پردازد، بلکه تأمین امنیت منابع انسانی، مالی و حتی تطابق با قوانین و مقررات نیز به عنوان عوامل ضروری برای تضمین موفقیت و پایداری بلندمدت سازمان‌ها شناخته می‌شود. با توجه به تهدیداتی نظیر هک اطلاعات، سرقت‌های فیزیکی، دستبرد به منابع انسانی و مشکلات مالی، سازمان‌ها باید تدابیر امنیتی مناسبی را برای مقابله با این خطرات اتخاذ کنند. این تدابیر شامل استراتژی‌های مختلف از جمله امنیت فیزیکی، امنیت سایبری، امنیت عملیاتی، امنیت مالی، امنیت منابع انسانی و پیروی از قوانین و مقررات است. عدم توجه به هر یک از این جنبه‌ها می‌تواند منجر به مشکلات جدی برای سازمان‌ها شود که ممکن است در نهایت به بحران و حتی شکست سازمان منجر گردد. هدف از تحقیق حاضر، تدوین الگویی است که به سازمان‌ها کمک کند تا بتوانند تهدیدهای گوناگونی نظیر سرقت اسرار و اطلاعات سازمانی، از دست دادن منابع انسانی، کاهش یا ریزش مشتریان، چالش‌های تأمین مالی و سایر مخاطراتی را که بقای سازمان را در معرض خطر قرار می‌دهند، شناسایی کرده و اقدامات پیشگیرانه‌ی متناسب با آن‌ها را اتخاذ نمایند. این تحقیق از نوع توسعه‌ایکاربردی است و به روش کیفی با رویکردی اکتشافی انجام شده است. گردآوری داده‌ها به‌صورت میدانی و از طریق مصاحبه‌های نیمه‌ساختاریافته با ۵۶ نفر از خبرگان حوزه‌های مختلف و به‌صورت هدفمند صورت گرفته است. برای تحلیل داده‌ها و تدوین الگوی نهایی، از روش تحلیل مضمون استفاده شده و اشباع نظری به عنوان معیار کفایت نمونه‌گیری در نظر گرفته شده است. نتایج نشان داده‌اند که تعداد 127 کد اولیه براساس اصول تکرار، تأکید و اهمیت از بررسی و تحلیل داده‌های حاصل از مصاحبه استخراج شده‌اند که در 37 مضمون فرعی و 6 مضمون اصلی شامل امنیت فیزیکی، امنیت فضای مجازی، امنیت عملیاتی، امنیت مالی، امنیت منابع انسانی و امنیت قانونی و امتثال دسته‌بندی شده‌اند.
کلیدواژه‌ها

عنوان مقاله English

Presenting an organizational security model on the path to business sustainability using thematic analysis method

نویسندگان English

Mohammadsaber Shahrestani 1
Hosein Vahidi 2
Fatemah Nabavinezhad 1
1 MA. graduated, Malik Ashtar University of Technology, Tehran, Iran
2 Assistant Professor, Department of Industrial Engineering, Malik Ashtar University of Technology, Isfahan, Iran
چکیده English

Introduction
In the contemporary volatile, uncertain, complex, and ambiguous (VUCA) business environment, the pursuit of organizational sustainability has transcended traditional performance metrics. While substantial scholarly attention has been directed toward organizational growth strategies and competitive advantage, a critical lacuna remains in the literature: the fundamental role of “organizational security” as a foundational pillar for strategic development. Organizational security is not merely a defensive function; it encompasses a comprehensive ecosystem of policies, risk-mitigation processes, and strategic measures designed to safeguard an organization’s tangible and intangible assets, intellectual capital, sensitive information, and human resources. As organizations operate within increasingly complex supply chains and digital landscapes, they face an unprecedented array of threats—ranging from industrial espionage and cyber-attacks to the attrition of critical talent and complex financial volatility. Surprisingly, many organizations treat security as a peripheral, technical concern rather than a strategic imperative. This study seeks to bridge this gap by proposing a holistic framework that enables organizations to identify, assess, and neutralize multifaceted threats. By conceptualizing security as an integrated strategic capability, this research provides a roadmap for organizations to transition from reactive protection to proactive resilience, thereby ensuring long-term viability and sustained competitive positioning in a turbulent marketplace.
Methodology
The current study employs a qualitative, applied-developmental research design, characterized by its exploratory nature. Given the complexity of organizational security and the need for deep, context-specific insights, a field-based approach was adopted. Data collection was facilitated through in-depth, semi-structured interviews conducted with a panel of 56 high-level experts. These participants were selected through purposeful sampling from six distinct, mission-critical domains, ensuring a multidisciplinary perspective—including information technology, human resources, financial management, legal affairs, and operational management. The analytical phase of the study adhered to the rigorous systematic content analysis methodology established by Braun and Clarke (2006). This process involved a multi-stage coding procedure: initial open coding to capture raw concepts, followed by axial coding to identify relationships, and finally, selective coding to synthesize core thematic categories. To ensure the reliability and validity of the research, the principle of theoretical saturation was strictly observed, ensuring that data collection continued until no new conceptual insights emerged from the participants’ discourse. This iterative process allowed for the transformation of granular data into a robust, conceptually grounded model of organizational security.
Results and Discussion
The rigorous thematic analysis of the interview transcripts yielded 127 initial codes, which were subsequently refined and integrated into 37 sub-themes and 6 overarching dimensions of organizational security. These dimensions—Physical Security, Cybersecurity, Operational Security, Financial Security, Human Resource (HR) Security, and Legal Compliance—collectively form the bedrock of the proposed security model. The findings indicate that these dimensions are highly interdependent. For instance, while cyber security protects digital infrastructure, it is inextricably linked to HR security (e.g., mitigating insider threats) and operational security (e.g., ensuring business continuity in the event of system failures). Financial security, on the other hand, acts as the overarching framework that sustains these measures, while legal compliance provides the normative boundary. The study posits that security should no longer be viewed as a siloed function. Instead, the extracted themes suggest that organizational resilience is a systemic property emerging from the integration of these six areas. Leaders who prioritize this multidimensional security posture are better positioned to mitigate risks such as intellectual property theft, hacking, talent poaching, and financial mismanagement, all of which pose existential threats in the modern era.
Conclusion
In the current global economic landscape, the traditional focus on gaining competitive advantage is insufficient if an organization lacks foundational security. This research highlights that negligence in any of the identified security domains—whether physical, cyber, operational, financial, human, or legal—can serve as a primary catalyst for organizational failure. The proposed organizational security model serves as a strategic imperative, advocating for a shift toward a culture of integrated security.
By proactively embedding these security dimensions into the core strategy, organizations can enhance their agility and ensure business continuity despite external shocks. Furthermore, the model provides practical insights for decision-makers to align their security investments with broader strategic goals, such as project stability, resource optimization, and regulatory alignment. Ultimately, this study asserts that organizational security is the prerequisite for growth. Only by creating a hardened, secure, and compliant internal environment can an organization successfully navigate the complexities of today’s market, securing not only its assets but its future.

کلیدواژه‌ها English

Keywords: Business sustainability
Business security
Organizational sustainability
Organizational security
Organizational threats
1.      Alinajad, F., Akbari, M., & Shiri, N. (2023). Conceptualization of the components of the sustainability model for women’s businesses in Behbahan County. Women in Development and Politics, 21(3), 717-741. [In Persian]
2.      Alsaif, M., Aljaafari, N., & Khan, A. R. (2015). Information security management in Saudi Arabian organizations. Procedia Computer Science, 56, 213-216. http://dx.doi.org/10.1016/j.procs.2015.07.201
3.      Bocken, N. M., Short, S. W., Rana, P., & Evans, S. (2014). A literature and practice review to develop sustainable business model archetypes. Journal of cleaner production, 65, 42-56.
4.      Braun, V., & Clarke, V. (2006). Using thematic analysis in psychology. Qualitative research in psychology, 3(2), 77-101.
5.      Cagnin, C. H., Loveridge, D., & Butler, J. (2005). Business sustainability maturity model. Business Strategy and the Environment, 9(6), 4-6.
6.      Doane, D., & MacGillivray, A. (2001). Economic sustainability: The business of staying in business. New Economics Foundation, 1-52.
7.      Dyllick, T., & Muff, K. (2016). Clarifying the meaning of sustainable business: Introducing a typology from business-as-usual to true business sustainability. Organization & Environment, 29(2), 156-174.
8.      Fadai Kiyani, R., Azizi, M., & Badi’ Zadeh, A. (2020). Providing a sustainability model for family businesses. Business Management Quarterly, 13(580), 384-415. [In Persian]
9.      Freeman, E. Q. (2000). E-merging Risks. Risk Management, 47(7), 12-12.
10.   Hinde, S. (1998). Special feature: Recent security surveys. Computers and Security, 17(3), 207-210.
11.   Hoffman, A. J. (2018). The next phase of business sustainability. Stanford Social Innovation Review, 16(2), 34-39.
12.   Kalabi, A. M. (2020). Modeling the factors affecting the sustainability of business models. Public Management Research, 13(47), 111-134. [In Persian]
13.   Kiron, D., Kruschwitz, N., Haanaes, K., Reeves, M., Fuisz-Kehrbach, S. K., & Kell, G. (2015). Joining forces: Collaboration and leadership for sustainability. MIT Sloan Management Review.
14.   Maas, K., Schaltegger, S., & Crutzen, N. (2016). Integrating corporate sustainability assessment, management accounting, control, and reporting. Journal of Cleaner Production, 136, 237-248.
15.   Mahmoudzadeh Ahmadinejad, A., Nazemi Ashni, A., & Mahmoudzadeh, E. (2024). A Look to the Future in Startups: A Review of the Most Common Foresight Methods in Business Model Design in Startups. Journal of Standard and Quality Management, 13(4), 141-173. [In Persian] https://doi.org/10.22034/jsqm.2024.412594.1520
16.   Malorgio, G., & Marangon, F. (2021). Agricultural business economics: the challenge of sustainability. Agricultural and Food Economics, 9, 1-4.
17.   Pham, H. C., Brennan, L., & Furnell, S. (2019). Information security burnout: Identification of sources and mitigating factors from security demands and resources. Journal of Information Security and Applications, 46, 96-107. https://doi.org/10.1016/j.jisa.2019.03.012
18.   Salari Nia, M. M., Niknami, M., Sabouri, M. S., & Rafiei, H. (2024). Providing a good governance model for the sustainability of agricultural businesses in Tehran Province (Case study: Agricultural Bank). Agricultural Economics and Development. [In Persian]
19.   Seyfollahi Anar, N., & Akbari Arbatani, G. (2023). Providing a model for business sustainability based on digital skills during the COVID-19 pandemic. Scientific-Research Journal of International Business Management, 6(4), 179-198. [In Persian]
20.   Sharafi, L., Rezai, R., Mirkezadeh, A. A., & Karami Dehkordi, I. (2019). Designing a sustainability model for small and medium agricultural businesses in Kermanshah Province. Agricultural Promotion and Education Research, 12(2 (Sequential 46)), 11-24. [In Persian]
21.   Shirmohammadi, A., Moftahi, H., & Tabaan, M. (2023). Designing a sustainability model for the automotive industry in Iran. Innovation Management in Defense Organizations, 6(3), 129-156. [In Persian]
22.   Silic, M., & Lowry, P. B. (2020). Using design-science based gamification to improve organizational security training and compliance. Journal of management information systems, 37(1), 129-161. http://dx.doi.org/10.1080/07421222.2019.1705512
23.   Ulvenblad, P., Barth, H., Ulvenblad, P. O., Ståhl, J., & Björklund, J. C. (2020). Overcoming barriers in agri-business development: two education programs for entrepreneurs in the Swedish agricultural sector. The Journal of Agricultural Education and Extension, 26(5), 443-464.
24.   Wanjiku Njogu, S. (2016). Factors Affecting Sustainability of Women Enterprises: Insights from Kapsabet Town (KT) Experience, Kenya. Humanities and Social Sciences, 4(4), 90-99.
25.   Wood, C. (2000). Integrated approach includes information security. Security, 37(2), 43-44.
 

  • تاریخ دریافت 05 دی 1403
  • تاریخ بازنگری 20 اسفند 1403
  • تاریخ پذیرش 27 اردیبهشت 1404