There is no reason to care. Your company won’t pay you extra to complicate your life with security practices so it’s rational to do the bare minimum when there’s no downside. From a typical office drone’s perspective, they’re already not paid enough, so why put any more effort or good faith than strictly necessary?
Not to mention, why is password management still a thing? On a corporate machine, the only place that should require a password is the system-provided login screen. Everything else should transparently inherit this authentication. The tech is absolutely there (and you can set up Keycloak/etc to seamlessly proxy between that and SAML for external services) so there’s absolutely no excuse for it. With machine authentication, even obtaining the password shouldn’t allow any remote attacker in because they lack the machine keys (in AD, this can be done with smart cards - the “machine auth” is actually the smart card, and the password its PIN). This is an area where the industry has actively regressed from the early days, but I guess Okta/etc shareholders need to eat too, despite significantly reducing security by training users to enter their password regularly in a browser after a chain of multiple redirects.