Our 155,000 team members innovate with purpose, providing customers with life's essentials so businesses can grow, communities prosper, and consumers live well. With over 160 years of experience as a family company, we look ahead while remaining true to our values. We put people first. We reach higher. We do the right thing-today and for generations to come.
Job Purpose and Impact
The Network Engineer - SASE will implement, operate, automate, and continuously improve Cargill's global Secure Access Service Edge (SASE) and Security Service Edge (SSE) services. This role will support the migration from legacy web proxy and remote-access technologies to cloud-delivered security and will configure capabilities such as Secure Web Gateway (SWG), Zero Trust Network Access (ZTNA), Cloud Access Security Broker (CASB), Data Loss Prevention (DLP), and threat protection. The engineer will work within established architecture and collaborate with senior engineers and partner teams to deliver reliable and secure access for users, sites, and applications.
Key Accountabilities
- NETWORK SOLUTIONS: Implements and partners to design network solutions to meet organizational needs, including creating network diagrams and blueprints.
- NETWORK DEVICES CONFIGURATION: Sets up and configures various moderately complex network devices such as routers, switches, firewalls, virtual private networks and software defined networking to maintain optimal performance and security.
- TROUBLESHOOTING & DIAGNOSTICS: Performs moderately complex troubleshooting and diagnostics to resolve network issues, ensuring minimal downtime and maintaining network reliability.
- NETWORK MAINTENANCE: Conducts routine maintenance and updates on network systems, including applying patches, service packs and security configurations.
- PERFORMANCE MONITORING & OPTIMIZATION: Monitors network performance and applies various tools to maintain system availability and reliability, and suggests necessary adjustments to optimize performance.
- SECURITY MEASURES: Sustains network security by implementing appropriate measures such as firewalls, intrusion detection systems and encryption technologies.
- DISASTER RECOVERY PLANNING: Implements and partners to develop disaster recovery plans to ensure business continuity in case of network failures.
- NETWORK AUTOMATION: Implements and partners to develop automation and tools to streamline network operations, including configuration management, device provisioning and software updates.
Qualifications
- Minimum requirement of 2 years of relevant work experience. Typically reflects 3 years or more of relevant experience.
- 3 years of relevant experience in network engineering, network security, cybersecurity engineering, or infrastructure operations.
- Hands-on experience supporting enterprise network or security technologies, with exposure to SASE, SSE, SWG, ZTNA, cloud security, or secure remote-access solutions.
- Strong understanding of enterprise networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, VPNs, SSL/TLS, certificates, and network security principles.
- Experience troubleshooting connectivity, authentication, and application-access issues in enterprise environments.
- Ability to create clear technical documentation and work effectively with geographically distributed engineering and operations teams.
Preferred:
- 5+ years of experience supporting enterprise network or security solutions within a large-scale, distributed IT environment.
- Hands-on experience with one or more leading SASE/SSE platforms, such as Netskope, Palo Alto Prisma Access, Zscaler Internet Access (ZIA), or Zscaler Private Access (ZPA).
- Experience administering SWG capabilities, including URL filtering, SSL/TLS inspection, cloud application controls, malware protection, DLP, threat prevention, and policy enforcement.
- Experience configuring ZTNA access to private applications and supporting initiatives that reduce reliance on traditional VPN technologies.
- Familiarity with endpoint traffic steering, GRE/IPsec tunnels, private access connectors or publishers, dedicated egress, and high-availability designs.
- Understanding of identity-driven security and integration with Microsoft Entra ID, Okta, Ping Identity, or similar identity providers using SAML, OAuth, OIDC, or SCIM.
- Experience integrating or operating security services with endpoint security, SIEM, XDR, or security operations workflows.
- Knowledge of cloud networking and security concepts across AWS, Azure, or Google Cloud Platform.
- Familiarity with automation and scripting using Python, PowerShell, REST APIs, Terraform, Ansible, GitHub, or similar tools.
- Experience using network, security, or digital-experience observability tools to investigate user experience, application performance, and security events.
- Experience developing low-level design documentation, implementation plans, test plans, and operational runbooks.
- Experience working within Agile engineering teams and using modern engineering or DevSecOps practices.
- Industry certifications such as CCNA/CCNP Security, PCNSE, Netskope certifications, Zscaler certifications, or equivalent are preferred.
Equal Opportunity Employer, including Disability/Vet.
To apply using chat/text, please click Apply Now button OR use this link to create a login to apply.
Skills Required
- Minimum 2 years of relevant work experience
- 3 years of relevant experience in network engineering, network security, cybersecurity engineering, or infrastructure operations
- Hands-on experience supporting enterprise network or security technologies, with exposure to SASE, SSE, SWG, ZTNA, cloud security, or secure remote-access solutions
- Strong understanding of enterprise networking fundamentals including TCP/IP, routing, switching, DNS, DHCP, VPNs, SSL/TLS, certificates, and network security principles
- Experience troubleshooting connectivity, authentication, and application-access issues in enterprise environments
- Ability to create clear technical documentation and work effectively with geographically distributed engineering and operations teams
- 5+ years of experience supporting enterprise network or security solutions within a large-scale, distributed IT environment
- Hands-on experience with SASE/SSE platforms such as Netskope, Palo Alto Prisma Access, Zscaler ZIA or ZPA
- Experience administering SWG capabilities including URL filtering, SSL/TLS inspection, cloud application controls, malware protection, DLP, threat prevention, and policy enforcement
- Experience configuring ZTNA access to private applications and reducing reliance on traditional VPN technologies
- Familiarity with endpoint traffic steering, GRE/IPsec tunnels, private access connectors/publishers, dedicated egress, and high-availability designs
- Understanding of identity-driven security and integration with Microsoft Entra ID, Okta, Ping Identity using SAML, OAuth, OIDC, or SCIM
- Experience integrating or operating security services with endpoint security, SIEM, XDR, or security operations workflows
- Knowledge of cloud networking and security concepts across AWS, Azure, or Google Cloud Platform
- Familiarity with automation and scripting using Python, PowerShell, REST APIs, Terraform, Ansible, GitHub, or similar tools
- Experience using network, security, or digital-experience observability tools to investigate user experience, application performance, and security events
- Experience developing low-level design documentation, implementation plans, test plans, and operational runbooks
- Experience working within Agile engineering teams and using modern engineering or DevSecOps practices
- Industry certifications such as CCNA/CCNP Security, PCNSE, Netskope certifications, Zscaler certifications, or equivalent
Cargill Compensation & Benefits Highlights
-
Healthcare Strength — Health coverage is described as robust, with multiple medical plan options (including HSA/HRA pathways) plus dental, vision, and mental‑health supports such as a 24/7 EAP and Lyra. Wellness incentives, health advocacy, and group‑rate voluntary protections further round out the offering.
-
Retirement Support — Retirement programs combine a 401(k) with company contributions and an Employee Stock Ownership Plan, with some materials also noting an employer‑funded retirement account based on age and service. This multi‑layered design emphasizes long‑term savings and ownership participation.
-
Parental & Family Support — Paid family leave for the delivering parent is outlined at up to 12 weeks fully paid when combining salary continuation and leave programs, alongside bonding and caregiver leave structures. Family resources such as adoption/surrogacy reimbursement, Bright Horizons childcare support, and Milk Stork are also available.
Cargill Insights
What We Do
We are a family company providing food, ingredients, agricultural solutions and industrial products to nourish the world in a safe, responsible and sustainable way. We connect farmers with markets so they can prosper. We connect customers with ingredients so they can make meals people love. And we connect families with daily essentials— from eggs to edible oils, salt to skincare, feed to flooring. By providing customers with products that are vital for living, we help businesses grow, communities prosper and consumers live well in their daily lives.
Why Work With Us
The decision to join Cargill can open the door to a world of possibility. As part of our Digital, Technology & Data team, you’ll get to be part of a large and diverse group full of unique perspectives united by a common, higher purpose while building a rewarding career full of opportunity, growth and the satisfaction of knowing your work matters.
Gallery
Cargill Teams
Cargill Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.



.jpg)












.jpg)











