My question(s) would be: why are people sloppy by nature when it comes to
security? Why is security still considered as a blanket as opposed to the core
of any system?

In most shops, the level of competence is barely sufficient to make sure that
the payroll system prints a check for every employee with the correct number on
it. Trying to keep the system running *and* secure is beyond their competence
level, so you have to choose one - running or secure. Most managers will
choose 'running', because if they choose 'secure', *they* don't get a paycheck

(Vastly oversimplified, but that's pretty much it in a nutshell).

