maxence.labbé_
FR EN
Open to opportunities & missions

> SRE / DevOps Engineer

From design to deployment, I handle it all.

SRE by trade, full-stack developer by training: I build the infrastructure AND the app running on it. Automation, security, CI/CD pipelines: the full technical chain, mastered end to end.

Contact me L LabbTech — my consulting & design studio
Maxence Labbé — SRE / DevOps Engineer
Maxence Labbé Bordeaux, FR · remote OK
Download CV ↓
Banking platform run in production
Autonomous · Resilient · Proactive
Tech (EPITECH) + business (IAE) trained
Bordeaux · Remote

// What I do

Four jobs, one goal: reliability

01

Run

Your applications stay online, even when a server goes down.

+ Technical detail − Hide detail

Docker / Compose container orchestration, Kubernetes, high availability.

02

Watch

I catch problems before your users do.

+ Technical detail − Hide detail

End-to-end observability: Grafana, Prometheus, Loki — metrics, logs, tuned alerts.

03

Automate

Every update ships by itself, with no human error.

+ Technical detail − Hide detail

GitLab CI pipelines, Ansible, Bash — from commit to production, hands-free.

04

Secure

Your passwords and access keys never lie around.

+ Technical detail − Hide detail

Secret centralisation, servers locked down end-to-end, CI best practices.

// A concrete example

From code to production, with no human intervention

What happens between a developer finishing a change and it going live. On my platforms, everything is automatic: fewer errors, more frequent updates, and a rollback in seconds if needed.

  1. Commit Code is pushed
  2. Tests Automatic checks
  3. Build The app is assembled
  4. Security Vulnerability scan
  5. Deploy Progressive rollout
  6. Live Monitored 24/7

// Career

Experience & education

From business management to running production infrastructure. A hybrid tech ↔ business path.

Experience

Kéria

Sep 2023 — Present
Full-time · SRE & DevOps ◦ Bordeaux

Owner of the infrastructure and deployment chain for a banking & real-estate platform in production.

+ Technical detail − Hide detail
Orchestration: containerised production infra running on Docker.
Observability: end-to-end monitoring with Grafana and Prometheus (logs, metrics, alerts).
Security & IaC: Ansible optimisation and secret centralisation via Infisical.
CI/CD: design and tuning of GitLab CI pipelines.
Docker Ansible GitLab CI Grafana Prometheus Infisical PostgreSQL MongoDB Linux

Lexo

Sep 2025 — Jun 2026
Co-founder & CTO ◦ South-West France

Sovereign B2B AI suite for legal and finance professionals.

+ Technical detail − Hide detail
Document workflow: email triage, assisted drafting, contract analysis (risky clauses, deadlines).
End-to-end architecture: AI pipeline, sovereign EU infra (ISO 27001, GDPR), AES-256 encryption.
Semantic search and a legal chat sourced on case law.
Native Gmail / Outlook integrations, per-client isolation. B2B SaaS in a regulated sector.
TypeScript AI / RAG Semantic search Sovereign infra AES-256 Gmail / Outlook

Extencia

www.extencia.fr Apr 2023 — Sep 2023
Internship · IT Assistant ◦ Bordeaux

Internal tooling and process automation for business teams.

+ Technical detail − Hide detail
Recurring task automation via VBA / OLE on the Office suite.
Power BI dashboards built from heterogeneous data sources.
SharePoint integration to centralise business data access.
Excel / VBA Power BI SharePoint

VetCare

Sep 2022 — Apr 2023
Co-founder · SRE / DevOps ◦ Bordeaux

SaaS platform for the veterinary sector — design, deployment and operation.

+ Technical detail − Hide detail
Production service orchestration via Docker Compose.
Full-stack development: ReactJS front-end, Ruby back-end, MongoDB database.
Set up and ran the infrastructure end-to-end.
Docker Compose ReactJS Ruby MongoDB

Groupe Rhinos

Sep 2021 — Dec 2021
Internship · Full-stack ◦ La Rochelle

Cybersecurity and network visualisation tooling.

+ Technical detail − Hide detail
Built a real-time interactive map of cyber-attacks.
Deployed web environments via Docker-compose and Django.
Python network surveillance scripts · Root Me score: 1350.
Python Django Docker-compose Cybersecurity

Education

2020 — 2025 · Bordeaux

Epitech Bordeaux

Master of Science · IS Architect

IT Expertise

2018 — 2020 · Bordeaux

Pôle Universitaire des Sciences de Gestion

Business management degree (DUT GEA)

Finance, management, strategy

Accounting & Financial Management option

2017 — 2018 · La Rochelle

Lycée René-Josué Valin

Scientific Baccalaureate

Mathematics option

Spoken

French Native
English Intermediate · pro
Spanish Beginner

// Skills

The everyday stack

The tools I run in production — and what they concretely deliver.

Languages

→ Build & script
  • TypeScript / JS
  • C
  • C++
  • Python
  • Bash
  • HTML
  • CSS

Infrastructure & Cloud

→ Host & orchestrate
  • Docker
  • Kubernetes
  • Linux
  • Traefik
  • Nginx
  • Scaleway
  • OVH
  • IONOS

Automation

→ Deploy without human error
  • GitLab CI/CD
  • Ansible
  • Terraform
  • Cron

Full-stack

→ Build the application
  • ReactJS
  • NestJS
  • NextJS
  • Astro
  • Hooks
  • TanStack
  • Tailwind
  • FastAPI
  • RabbitMQ

AI

→ Integrate intelligence
  • LLM
  • OCR
  • RAG
  • NER
  • On-premise
  • Harness
  • Models
  • Gateway
  • Sovereignty
  • Frugal

Security & Authentication

→ Security-first mindset
  • SOC
  • Audit
  • Security-first
  • SSO
  • JWT
  • OAuth 2.0
  • RBAC

Data & Storage

→ Store & analyse
  • PostgreSQL
  • MongoDB
  • Redis
  • S3 Storage
  • Power BI

Observability

→ Measure & understand
  • Grafana
  • OpenTelemetry
  • Prometheus
  • Loki
  • Promtail

Tools

→ Code day to day
  • Antigravity
  • Cursor
  • Claude
  • Gemini
  • Git
  • Linear

Beyond the tech

What keeps an infra running over time — the reflexes as much as the code.

Stress management

An incident at 23:59 on a Friday? Been there. I stay calm, isolate, roll back, document.

Business analysis

I tie every technical metric back to what matters: an SLO becomes an impact on costs or revenue, and back again.

Technical curiosity

I watch, test, break, document. I like staying on top of the latest releases and new tools.

Disciplined & organised

The same rigour I bring to training: structured, tidy, consistent — on my pipelines as much as my planning.

// Interests

Away from the keyboard

What drives me away from the screen — and feeds the same rigour and curiosity into my work.

Sport & Discipline

Strength · Calisthenics · Running

Into strength training, calisthenics and running to keep a healthy lifestyle, push my limits and sharpen my discipline.

Finance & Economics

Markets · Analysis · Investing

Passionate about following the markets, economic analysis and managing investments to better understand the financial world.

DIY & Robotics

ESP32 · 3D modelling · Woodwork

Curious about physical creation — from wiring electronics with ESP32 boards to 3D modelling and woodworking.

Photography

Travel · Everyday · Eye

Capturing moments while travelling and observing simple everyday scenes to develop my visual eye.

// Projects

What I'm building

Ongoing client work, open-source experiments and capabilities ready to plug into a mission.

LabbTech

Consulting & design studio labbtech.fr

My independent consulting & design studio. I audit, harden and deploy infrastructure, and I design bespoke applications — from audit to production. The services below are the ones I run under LabbTech.

Discover the studio ↗ coming soon
  • Infra audit
  • CI/CD
  • Observability
  • Containerisation
  • Security
  • Advisory
  • App design
  • Full-stack
P01 Mission

Gallisa

In development

Mobile web app to streamline screening tests in pharmacies.

  • NextJS
  • Medical
  • RAG
P02 Mission

Domaine du Marensin

Showcase site · rental

Design of a showcase website for renting out a villa.

  • Showcase site
  • Web design
  • Rental
P03 Mission

Grecromavia

In development · medical

App to quickly assess the immunological risk when a transplant is proposed.

  • Medical
  • Transplant
  • Immunology
P04 Mission

VetCare

Pet health records

Digital health records for better animal follow-up, between vets and with owners.

  • Medical
  • Tracking
  • Reliability
P05 Mission

Network Analyser

Audit tool

Python tool for open-port analysis and flaw detection. Built for fast audits at the start of a mission.

  • Python
  • Security
  • Nmap
P06 Mission

Real-time Cyberattack Visualiser & Replay

Internship · Rhinos

Live visualisation of cyberattacks, with a replay feature to rewind and analyse incidents. Built during my internship at Rhinos, like the network analyser.

  • Python
  • Security
  • Real-time
  • Replay

// Services

What the studio offers

What I run under LabbTech, my independent consulting & design studio — alongside my current role (evenings, weekends, time off). Click a service for details.

01

Infrastructure audit

Review of your current setup: containers, secrets, observability, friction points.
Typical duration
1 to 2 weeks
For whom
Tech startups / SMEs who feel their infra is slipping out of control, without a clear plan.
Not for you if
You just need help on a single Dockerfile (use service 02)
Talk about this mission →
What you get
  • Full stack mapping (services, dependencies, secrets, deployments)
  • Critical risks identification (SPOF, plain-text secrets, no monitoring)
  • Prioritised quick wins (impact / effort)
  • 90-day roadmap, written for decision-makers
02

CI/CD & Automation

Design or rebuild of GitLab CI / Ansible pipelines.
Typical duration
2 to 4 weeks
For whom
Teams still deploying by hand or scared of their own pipelines.
Not for you if
You're on legacy Jenkins with no plans to move (I can advise, not operate)
Talk about this mission →
What you get
  • Full GitLab CI pipeline: lint, test, build, SAST scan, deploy
  • Idempotent Ansible modules for staging & prod
  • Secret centralisation (Infisical / Vault)
  • Runbook documentation for the team
03

Observability

Full Grafana + Prometheus stack: metrics, logs, useful alerts.
Typical duration
1 to 3 weeks
For whom
You learn about incidents from your users. Never again.
Not for you if
You're looking for a managed plug & play SaaS (Datadog might be enough)
Talk about this mission →
What you get
  • Grafana / Prometheus / Loki stack deployed and configured
  • Dashboards readable by ops AND PMs
  • Alerting tuned (no noise, no fatigue)
  • Business metrics next to technical ones
04

Containerisation

Migrate existing apps to Docker / Compose, alongside your devs.
Typical duration
1 to 4 weeks per app
For whom
Legacy apps still running on VMs or bare-metal.
Not for you if
You want full K8s in production (chain me with a K8s specialist)
Talk about this mission →
What you get
  • Clean Dockerfiles (multi-stage, root-less when possible)
  • docker-compose for staging & reproducible local dev
  • Env vars, secrets, healthchecks done right
  • Cutover doc for the team
05

Secrets hardening

No more .env lying around in Git or Slack attachments.
Typical duration
1 to 2 weeks
For whom
You know it's bad but don't know where to start.
Not for you if
You're already on AWS Secrets Manager + KMS and all is well
Talk about this mission →
What you get
  • Current secrets audit (where, who, how)
  • Infisical (or Vault) setup with rotation
  • CI/CD integration: no more leaking secrets in jobs
  • Onboarding / offboarding procedures for the team
06

App, SaaS & website design

Bespoke design & development: web app, SaaS platform or website — from scoping to production.
Typical duration
3 to 8 weeks depending on scope
For whom
Founders & SMEs with a clear business need who want a clean, maintainable product that's ready to run.
Not for you if
You only want a design mockup, with no development
Talk about this mission →
What you get
  • Product scoping and argued tech choices
  • Full-stack development (ReactJS front, back, database)
  • Infra, CI/CD and deployment included from day one
  • Documented code, handed over — no lock-in to me
07

MVP design & support

Got an idea to validate? We build a simple, real, live MVP — no over-engineering.
Typical duration
2 to 6 weeks
For whom
Project owners who want to test their idea in the real world before investing heavily.
Not for you if
You want the full final product in v1 (use service 06 instead)
Talk about this mission →
What you get
  • Scoping the minimum that actually makes sense
  • A working, deployed MVP usable by real users
  • Tech choices made to grow without a rewrite
  • A clear plan for what's next (keep vs. drop)
08

App deployment & AI-app rescue

App is ready but won't go live? I deploy it, secure it and debug the generated code.
Typical duration
3 days to 2 weeks
For whom
You built an app or a site (often with AI) but you're stuck getting it online, or the code that "worked" breaks in production.
Not for you if
You already have a DevOps team handling your deployments
Talk about this mission →
What you get
  • Full deployment: domain name, HTTPS, hosting, database
  • Cleanup and takeover of AI-generated code (structure, secrets, dependencies)
  • Fixing bugs and unpredictable behaviour in production
  • You leave with a live app and the means to redeploy it yourself
These services are delivered through LabbTech, my independent studio. See the studio on labbtech.fr ↗ coming soon

// Contact

Let's talk.

Recruiter, future client: if the project is serious, I've got 30 minutes. Reply within 24-48 business hours.

01 Email maxence.labbe.pro@gmail.com 02 LinkedIn /in/maxence-labbé 03 LabbTech labbtech.fr