Long package names are really unnecessary in samples and they just clutter things up. Also Spring Loaded doesn't work with org.sfw packages, so to demo that technology you need a different package name.
Spring Security 3.2 has a new annotation @EnableWebMvcSecurity that we should use if MVC is being used.