Is There ERP Security?

I just learned that there is not much security when it comes to ERP Security.  It is because the file system is wide open and most files are read-write group.  And the thing is all users belong to that group.  So security is so bad as the integrity of the whole system is wide open to disruption by the users of the system.  So can you just imagine if one person makes a mistake, the entire system will be in jeopardy. 

So how can you make it secure?  The first action that you have to do is to get the system administrators to seure the application host.  This is the fastest and easiest way for security.