Network Security Engineer SASE
Atlanta, GA - USA
Job Summary
Cargill is committed to providing food and agricultural solutions to nourish the world in a safe responsible and sustainable way. Sitting at the heart of the supply chain we partner with farmers and customers to source make and deliver products that are vital for living.
Our 155000 team members innovate with purpose providing customers with lifes essentials so businesses can grow communities prosper and consumers live well. With over 160 years of experience as a family company we look ahead while remaining true to our values. We put people first. We reach higher. We do the right thingtoday and for generations to come.
The Network Engineer - SASE will implement operate automate and continuously improve Cargills global Secure Access Service Edge (SASE) and Security Service Edge (SSE) services. This role will support the migration from legacy web proxy and remote-access technologies to cloud-delivered security and will configure capabilities such as Secure Web Gateway (SWG) Zero Trust Network Access (ZTNA) Cloud Access Security Broker (CASB) Data Loss Prevention (DLP) and threat protection. The engineer will work within established architecture and collaborate with senior engineers and partner teams to deliver reliable and secure access for users sites and applications.
- NETWORK SOLUTIONS: Implements and partners to design network solutions to meet organizational needs including creating network diagrams and blueprints.
- NETWORK DEVICES CONFIGURATION: Sets up and configures various moderately complex network devices such as routers switches firewalls virtual private networks and software defined networking to maintain optimal performance and security.
- TROUBLESHOOTING & DIAGNOSTICS: Performs moderately complex troubleshooting and diagnostics to resolve network issues ensuring minimal downtime and maintaining network reliability.
- NETWORK MAINTENANCE: Conducts routine maintenance and updates on network systems including applying patches service packs and security configurations.
- PERFORMANCE MONITORING & OPTIMIZATION: Monitors network performance and applies various tools to maintain system availability and reliability and suggests necessary adjustments to optimize performance.
- SECURITY MEASURES: Sustains network security by implementing appropriate measures such as firewalls intrusion detection systems and encryption technologies.
- DISASTER RECOVERY PLANNING: Implements and partners to develop disaster recovery plans to ensure business continuity in case of network failures.
- NETWORK AUTOMATION: Implements and partners to develop automation and tools to streamline network operations including configuration management device provisioning and software updates.
- Minimum requirement of 2 years of relevant work experience. Typically reflects 3 years or more of relevant experience.
- 3 years of relevant experience in network engineering network security cybersecurity engineering or infrastructure operations.
- Hands-on experience supporting enterprise network or security technologies with exposure to SASE SSE SWG ZTNA cloud security or secure remote-access solutions.
- Strong understanding of enterprise networking fundamentals including TCP/IP routing switching DNS DHCP VPNs SSL/TLS certificates and network security principles.
- Experience troubleshooting connectivity authentication and application-access issues in enterprise environments.
- Ability to create clear technical documentation and work effectively with geographically distributed engineering and operations teams.
Preferred:
- 5 years of experience supporting enterprise network or security solutions within a large-scale distributed IT environment.
- Hands-on experience with one or more leading SASE/SSE platforms such as Netskope Palo Alto Prisma Access Zscaler Internet Access (ZIA) or Zscaler Private Access (ZPA).
- Experience administering SWG capabilities including URL filtering SSL/TLS inspection cloud application controls malware protection DLP threat prevention and policy enforcement.
- Experience configuring ZTNA access to private applications and supporting initiatives that reduce reliance on traditional VPN technologies.
- Familiarity with endpoint traffic steering GRE/IPsec tunnels private access connectors or publishers dedicated egress and high-availability designs.
- Understanding of identity-driven security and integration with Microsoft Entra ID Okta Ping Identity or similar identity providers using SAML OAuth OIDC or SCIM.
- Experience integrating or operating security services with endpoint security SIEM XDR or security operations workflows.
- Knowledge of cloud networking and security concepts across AWS Azure or Google Cloud Platform.
- Familiarity with automation and scripting using Python PowerShell REST APIs Terraform Ansible GitHub or similar tools.
- Experience using network security or digital-experience observability tools to investigate user experience application performance and security events.
- Experience developing low-level design documentation implementation plans test plans and operational runbooks.
- Experience working within Agile engineering teams and using modern engineering or DevSecOps practices.
- Industry certifications such as CCNA/CCNP Security PCNSE Netskope certifications Zscaler certifications or equivalent are preferred.
Equal Opportunity Employer including Disability/Vet.
Required Experience:
IC
About Company
Cargill, Incorporated is an American privately held global corporation based in Minnetonka, Minnesota, and incorporated in Wilmington, Delaware. Founded in 1865, it is the largest privately held corporation in the United States in terms of revenue.