I guess it's not too far from the reality - at least since Windows 10? Windows got a lot of stuff that is better than Linux in that regard. Control flow guard, Device Guard Virtualisation, ALSR - the current stack/heap guard page mess is also solved there. Linux is full of local priv escalation bugs (basically every update fixes one - http://www.cvedetails.com/vulnerability-list/vendor_id-33/pr...)
I'm not going to agree or disagree on this, but Microsoft's choice to shove all syscalls into a DLL where a defined ABI is easier to maintain certainly makes dramatic security improvements to the kernel easier without breaking userspace.
I am indeed. Linux lacks many of the security features and exploit mitigations present in Windows, despite the efforts of contributors such as grsecurity.
There appears to be no overarching strategy in Linux to improve security, it's all rather haphazard.