Authorization feels inseparable from your product, so we keep rebuilding it in every service, framework, and rewrite. In this talk, I’ll challenge that assumption and show how treating authorization as shared infrastructure (without giving up product-specific logic) actually makes systems safer, more flexible, and easier to evolve.
The audience will learn how to assess inefficiencies in their applications and processes, decouple authorization and application logic, and consume authorization as a shared service without compromising their unique security and business needs.