    Motherboards should come with jumpers to disable ring <-1, also processor manufacturers should guarantee that the mechanisms to disable these rings work.

    The usefulness of Intel AMT is without question, but when it operates even when disabled by the BIOS I lose faith in the usefulness in system administration being it's only intent.

    Force majeure is far too easy a claim to make in the current situation if a "bug" causes a breach of AMT, an argument which will hold no water for a simple off switch ... so for an off switch I can rely on Intel's greed in keeping it truly secure, for AMT I have to trust their bright blue eyes. I trust a companies greed far more than their honesty.
