The presenter of the "Software Assurance" briefing, in 2012

Prepare a 300-word Group discussion post in response to the following: The presenter of the "Software Assurance" briefing, in 2012, called for organizations to “Build Security In”, and recommended certain approaches, processes, and standards. Recent events, including the OPM break-in, would seem to indicate that this call has been, to at least some extent, ignored. Who is at fault? The software development community? Or consumers (including acquisition professionals) who judge software more by cost than by safety and security?
Your response should reflect the information you synthesized from the attachments.