Our 155,000 team members innovate with purpose, providing customers with life's essentials so businesses can grow, communities prosper, and consumers live well. With over 160 years of experience as a family company, we look ahead while remaining true to our values. We put people first. We reach higher. We do the right thing-today and for generations to come.
Job Purpose and Impact
The Senior Network Engineer - SASE will lead the design, deployment, automation, operation, and continuous improvement of Cargill's global Secure Access Service Edge (SASE) and Security Service Edge (SSE) capabilities. This role will help transform secure connectivity by migrating legacy web proxy and remote-access technologies to cloud-delivered security services, including Secure Web Gateway (SWG), Zero Trust Network Access (ZTNA), Cloud Access Security Broker (CASB), Data Loss Prevention (DLP), and threat protection. The engineer will provide technical leadership across network, security, identity, cloud, endpoint, and application teams to deliver reliable, scalable, and policy-driven access for users, sites, and applications.
Key Accountabilities
- NETWORK SOLUTIONS: Designs, implements and maintains network solutions to meet organizational needs, including creating network diagrams and blueprints.
- NETWORK DEVICES CONFIGURATION: Sets up and configures various complex network devices such as routers, switches, firewalls, virtual private networks and software defined networking to maintain optimal performance and security.
- TROUBLESHOOTING & DIAGNOSTICS: Performs complex troubleshooting and diagnostics to resolve network issues, ensuring minimal downtime and maintaining network reliability.
- NETWORK MAINTENANCE: Leads routine maintenance and updates on network systems, including applying patches, service packs and security configurations.
- PERFORMANCE MONITORING & OPTIMIZATION: Monitors network performance, maintains system availability and reliability, and makes necessary adjustments to optimize performance.
- SECURITY MEASURES: Sustains network security by leading the implementation of appropriate measures such as firewalls, intrusion detection systems and encryption technologies.
- DISASTER RECOVERY PLANNING: Develops and implements disaster recovery plans to ensure business continuity in case of network failures.
- NETWORK AUTOMATION: Develops and implements automation and tools to streamline network operations, including configuration management, device provisioning and software updates.
Qualifications
- Minimum requirement of 4 years of relevant work experience. Typically reflects 5 years or more of relevant experience.
- Minimum of 5 years of relevant experience in network engineering, network security, or cybersecurity engineering.
- Hands-on experience implementing and supporting SASE or SSE solutions in an enterprise environment.
- Experience deploying and managing SWG and ZTNA technologies.
- Strong understanding of enterprise networking fundamentals, including TCP/IP, routing, switching, DNS, DHCP, VPNs, SSL/TLS, certificates, and network security principles.
- Experience troubleshooting complex connectivity, authentication, and application-access issues across hybrid and cloud environments.
Preferred:
- Experience implementing and administering one or more leading SASE/SSE platforms, such as Netskope, Palo Alto Prisma Access, Zscaler Internet Access (ZIA), or Zscaler Private Access (ZPA).
- Experience designing, implementing, and supporting enterprise firewall platforms, such as Check Point, Palo Alto Networks, or Fortinet, including security policy management, network segmentation, NAT, VPN connectivity, and integration with SASE architectures.
- Deep understanding of SWG capabilities, including URL filtering, SSL/TLS inspection, cloud application visibility and control, malware protection, DLP, threat prevention, and policy enforcement.
- Experience designing ZTNA solutions for secure access to private applications and reducing reliance on traditional VPN technologies.
- Experience with SASE traffic steering and service components, including endpoint clients, GRE/IPsec tunnels, private access connectors or publishers, dedicated egress, and high-availability designs.
- Strong understanding of identity-driven security and integration with Microsoft Entra ID, Okta, Ping Identity, or similar identity providers using SAML, OAuth, OIDC, and SCIM.
- Experience integrating SASE platforms with endpoint security, SIEM, XDR, and security operations workflows.
- Knowledge of cloud networking and security architectures across AWS, Azure, and Google Cloud Platform.
- Experience with policy lifecycle management, security posture assessments, exception governance, and change control for cloud-delivered security services.
- Experience with automation and scripting using Python, PowerShell, REST APIs, Terraform, Ansible, GitHub, or similar tools.
- Experience with network, security, and digital-experience observability tools used to monitor user experience, application performance, and security events.
- Ability to develop technical architecture documentation, low-level design artifacts, implementation plans, operational runbooks, and support models for SASE deployments.
- Experience working within Agile engineering teams using modern engineering and DevSecOps practices.
- Demonstrated ability to provide technical leadership, mentor engineers, and collaborate across network, security, identity, cloud, endpoint, and application teams.
Equal Opportunity Employer, including Disability/Vet.
To apply using chat/text, please click Apply Now button OR use this link to create a login to apply.
Skills Required
- Minimum of 5 years of relevant experience in network engineering, network security, or cybersecurity engineering
- Hands-on experience implementing and supporting SASE or SSE solutions in an enterprise environment
- Experience deploying and managing Secure Web Gateway (SWG) and Zero Trust Network Access (ZTNA) technologies
- Strong understanding of enterprise networking fundamentals (TCP/IP, routing, switching, DNS, DHCP, VPNs, SSL/TLS, certificates) and network security principles
- Experience troubleshooting complex connectivity, authentication, and application-access issues across hybrid and cloud environments
- Experience implementing/administering SASE/SSE platforms such as Netskope, Palo Alto Prisma Access, Zscaler ZIA/ZPA
- Experience designing and supporting enterprise firewall platforms (Check Point, Palo Alto Networks, Fortinet) and integration with SASE
- Deep understanding of SWG capabilities (URL filtering, SSL/TLS inspection, DLP, malware protection, policy enforcement)
- Experience designing ZTNA solutions and reducing reliance on traditional VPN technologies
- Experience with SASE traffic steering and components (endpoint clients, GRE/IPsec tunnels, private access connectors, dedicated egress, HA designs)
- Experience integrating identity providers (Microsoft Entra ID, Okta, Ping Identity) using SAML, OAuth, OIDC, SCIM
- Experience integrating SASE platforms with endpoint security, SIEM, XDR, and security operations workflows
- Knowledge of cloud networking and security architectures across AWS, Azure, and Google Cloud Platform
- Experience with automation and scripting using Python, PowerShell, REST APIs, Terraform, Ansible, GitHub
- Ability to develop technical architecture documentation, low-level design artifacts, implementation plans, runbooks, and support models
- Experience working within Agile engineering teams using modern engineering and DevSecOps practices
- Demonstrated ability to provide technical leadership and mentor engineers across network, security, identity, cloud, endpoint, and application teams
Cargill Compensation & Benefits Highlights
-
Healthcare Strength — Health coverage is described as robust, with multiple medical plan options (including HSA/HRA pathways) plus dental, vision, and mental‑health supports such as a 24/7 EAP and Lyra. Wellness incentives, health advocacy, and group‑rate voluntary protections further round out the offering.
-
Retirement Support — Retirement programs combine a 401(k) with company contributions and an Employee Stock Ownership Plan, with some materials also noting an employer‑funded retirement account based on age and service. This multi‑layered design emphasizes long‑term savings and ownership participation.
-
Parental & Family Support — Paid family leave for the delivering parent is outlined at up to 12 weeks fully paid when combining salary continuation and leave programs, alongside bonding and caregiver leave structures. Family resources such as adoption/surrogacy reimbursement, Bright Horizons childcare support, and Milk Stork are also available.
Cargill Insights
What We Do
We are a family company providing food, ingredients, agricultural solutions and industrial products to nourish the world in a safe, responsible and sustainable way. We connect farmers with markets so they can prosper. We connect customers with ingredients so they can make meals people love. And we connect families with daily essentials— from eggs to edible oils, salt to skincare, feed to flooring. By providing customers with products that are vital for living, we help businesses grow, communities prosper and consumers live well in their daily lives.
Why Work With Us
The decision to join Cargill can open the door to a world of possibility. As part of our Digital, Technology & Data team, you’ll get to be part of a large and diverse group full of unique perspectives united by a common, higher purpose while building a rewarding career full of opportunity, growth and the satisfaction of knowing your work matters.
Gallery
Cargill Teams
Cargill Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.



.jpg)












.jpg)











