SpiceDB Authorization Engineer | Joshua Fields
Authorization work is where product, security, data ownership, and developer experience collide. I have shipped a production SpiceDB foundation that other engineers built on daily.
Best fit
- Teams adopting SpiceDB, Zanzibar-style permissions, schema-as-code, or relationship-based access control.
- Financial, institutional, or multi-tenant platforms where authorization has to be explicit and maintainable.
- Backends that need migration plans, shadow-mode rollout, Go client libraries, and clear role/capability modelling.
Proof
- Designed and shipped Kubernetes manifests, schema-as-code, and a 12-role x 70-capability matrix for Monstro.
- Built a Go client library and shadow-mode rollout path across production handlers.
- Led a subject-key migration from customer-based access to segment-based access.
- Unblocked jobs engine and consumer-to-banker messaging rails through authorization model changes.
Stack: SpiceDB, Zanzibar, Go, Kubernetes, PostgreSQL, CI/CD, Schema-as-code, Authorization, RBAC, ReBAC
Download authorization CV | Email Joshua | Monstro experience
Joshua Fields — full portfolio