This is a huge failure.
So just exporting the private key so easily without some pretty involved hight-tech HSM key extraction sounds insane.
https://www.cloudflare.com/dns/dnssec/root-signing-ceremony/
They have a page for each signing ceremony:
https://www.iana.org/dnssec/ceremonies/41
With a script of everything done:
Because losing these keys can be very, very, very expensive.
For an example (somewhat similar to this Postbank case) see India Cosmos Bank 2018 incident (https://www.reuters.com/article/cyber-heist-india-idUSL4N1V5... is one link) where criminals generated fake cards to cash out some $13 million; and replacing 12M bank cards also has an huge cost to replace the cards (perhaps roughly $12M - $1 per card replacement is plausible though possibly on the cheap side) even if we ignore the reputation cost.