Plenty of big organisations use Windows for almost everything, and certainly don't go around sandboxing it. They manage regular security patches just as you would for any other operating system. As a (perhaps extreme) example - the Royal Navy use Windows to run several of their warships: http://www.theregister.co.uk/2009/01/05/windows_for_warships...