Earlier quoted context omitted.
> I don't care that you feel restricted Yeah well, this is why we don't like security engineers. You absolutely should care that the policies you push for are making workers feel restricted. For your job to even exist, engineers must be able to produce just remember that.
There is a middle ground between keeping users (in this case Engineering) happy and an environment secure. Ideally, Security Ownership should be taken up by the Application/Dev team with an open understanding that heads roll if you messed up ("ownership"), and a security team and platform team exists to help consult and implement security and deployment. I guess they call philosophy "DevSecOps" or "Shift-Left" in the…
So it will almost always get the backburner. Hell even if there are financial consequences: those don't matter if you don't really make money in the first place.