Senior DevOps Engineer (Toulouse, FR)

About Connektica

 

Based in Montreal and Toulouse, Connektica designs and develops SaaS software solutions initially dedicated to the space manufacturing industry. Our solutions combine the digitization of assembly procedures, automated testing (radio-frequency, environmental), data analytics, and automated reporting including the verification of quality-assurance criteria.

Our innovative applications significantly reduce production costs and development lead times for complex hardware, while ensuring the highest quality standards. Already established in Quebec and Europe, Connektica is growing its team to support its international expansion.

 

Role

 

You will join our Toulouse team to take on a major technical challenge: transforming our SaaS platform into a product that can be deployed and maintained directly at our customers’ sites, in on-premise environments and particularly air-gapped ones.

The challenge: achieving, in a disconnected environment, the level of observability and security our customers expect.

As Senior DevOps Engineer, you will design the platform’s offline distribution chain and drive the architecture trade-offs that make it disconnectable. You will work with the Head of Engineering, the technical team (DevOps and developers), and the product teams. To carry out this project, you will be given genuine decision-making power, not just an execution role.

 

Responsibilities

 

  • Offline Packaging & Distribution: Produce bundles that are complete, reproducible, and verifiable (mirrored containerized images, Helm charts, binaries, system dependencies, and AI model weights), backed by a strict system of checksums and signatures.
  • Deployment & Customer Autonomy: Precisely define the boundary between our product and the customer’s infrastructure. You will be responsible for delivering standalone Kubernetes distributions or supporting existing clusters, all accompanied by comprehensive documentation designed to make third-party administrators 100% autonomous.
  • Network-free Lifecycle Management (Updates & Rollbacks): Architect robust update processes in the absence of connectivity. This involves optimizing delta transport, designing reversible database migrations, and managing version drift across our various customers.
  • Diagnostics in Air-Gapped mode: Rethink investigation without any remote access (no SSH, no outbound telemetry). You will set up local information-collection tools (support bundles) that the customer can export manually, complete enough to investigate and resolve incidents blind.
  • Strict Dependency Decoupling: Audit the existing stack and replace any component requiring Internet access or a managed service. You will integrate embedded alternatives for authentication (self-hosted OIDC), object storage (S3-compatible), databases, mail routing, and third-party APIs.
  • Unified Observability: Guarantee the same monitoring standard in both SaaS and on-premise environments. Within the bundle, you will deploy a 100% self-hostable observability stack covering metrics, logs, traces, SLIs/SLOs, and alerting.
  • Security & Supply Chain: Ensure an impeccable level of security, which here becomes a genuine contractual deliverable. Your responsibilities will include cluster hardening, strict secrets management, and fully securing the supply chain (SBOM generation, artifact signing, and proactive vulnerability management).

 

Required qualifications

 

  • Education: Engineering degree or equivalent in a computer-science field.
  • Experience: You have at least 8 years of hands-on DevOps or infrastructure engineering. Above all, you have concrete experience delivering software on a third party’s site, ideally in disconnected (air-gapped) environments or on heavily constrained on-premise infrastructure. For us this is an absolute prerequisite: the rest can be learned, but this hands-on field experience is crucial.
  • Languages: Command of French and technical English (spoken and written – international context).

 

Technical skills

 

  • Implementation and operation of production Kubernetes clusters, including self-contained distributions (Talos, K3s, RKE2…)
  • Low-level Linux expertise: non-interactive installation, disk encryption, networking, and filtering
  • Declarative, version-controlled approach to infrastructure: Helm, GitOps, and internal tooling in Shell, Go, or Python
  • Virtual machines and hypervisors (VMware, OpenStack, Proxmox…)
  • Offline artifact packaging and transport: complete OCI bundles (images, charts, binaries)
  • Proven autonomy on at least two self-hosted components replacing a managed service: database, object storage, secrets management, IdP
  • Strong writing skills: this role produces as much documentation and procedures as code

 

Preferred skills

 

  • Terraform/OpenTofu
  • AI infrastructure in disconnected environments
  • Compliance frameworks: ISO 27001, SOC 2, HDS, and particularly SecNumCloud

 

Qualities and attributes we look for

 

  • Communication: Excellent verbal and written skills to align product and infrastructure teams.
  • Autonomy & ownership: Ability to drive foundational initiatives end to end, from design to delivery.
  • Rigor & reproducibility: A taste for clean, versioned, and documented work, in a context where the customer audits what you hand over.
  • Service mindset: Strong commitment to reliability and user satisfaction (both internal and external).

 

What we offer

 

  • Contract: Full-time permanent contract (CDI)
  • Compensation: €65,000 – €80,000 gross annual, depending on profile and experience
  • Flexibility: Remote work (more than 50%) and flexible hours
  • Benefits: Quality company health insurance (Swisslife)
  • Work environment: Modern offices in Toulouse, a dynamic atmosphere, and regular knowledge sharing
  • Transport: Public-transport costs covered (50%)

 

Contact

Interested in the role ?

Send us an email at hiring@connektica.com