Hardcoded signature validation can go a long way, but of course it really needs to be bulletproof, and also take e.g. downgrade protection into consideration.
An added physical switch, while more secure, is (as the previous commenter mentioned) so impractical, that it will more likely lead to less updating of vulnerable microcode.
The signature/encryption is still a problem, which might be why they are using older AMD K8 and K10 processors from 2007 which didn't have this security. Still, if the keys do leak out of AMD or Intel, this is a huge security hole.
http://www.inertiawar.com/microcode/
He even extracted and posted the RSA public keys used to verify the microcode. Though he later removed them, they're still available on the internet archive:
https://web.archive.org/web/20140403200048/http://inertiawar...
"Most update mechanisms are protected by signatures or other cryptographic primitives. However there were some indications that older CPU models (until around 2013) do not have a strong cryptographic protection and thus would accept custom updates."
[1]: https://media.ccc.de/v/34c3-9058-everything_you_want_to_know...