Since they're the ones who required NT-on-ARM device vendors to disable user control of secure boot, yes it is their job.