A lot of security is human and process based. Technical is important, but the best software in the world won't survive someone being social engineered.
The best software in the world is actually explicitly designed to survive being social engineered. Launching a nuclear ICBM requires more than 4 levels of remote authorization and combined secrets from 2 trusted sources that live offsite. Being "social engineered" in a situation like this means torturing a half-dozen military personnel for confidential keys you can't even validate.