Is secure-by-default an achievable reality?

I want to believe it's possible - but is it? https://www.tripwire.com/state-of-security/secure-default-achievable-reality

If we were to liken our IT security processes to traditional workplace health and safety operations, there are a lot of parallels that show what we’re already doing right, as well as highlighting what we have been missing and should consider adopting into our workflows.