Keep in mind, by close, we are talking within a foot of the card or phone NFC chip or radio. RFID is by design not supposed to work beyond that. Many tap-to-pay POS systems have their transmit power up too high. The simplest solution is to lower the transmit power of tap-to-pay transmit power down to the bare minimum needed for it to work.
Also, there will always be a trade-off between convenience and security. Generally speaking, more convenience equals less security. I use Samsung Pay and I have it set up to require my fingerprint or PIN every time I use it; even if the phone is unlocked.