Knowledge primarily, since I'm not running a business.
At this point, like they say in Chips, TLS inspection is standard...
If your enterprise isn't doing TLS inspection on everything other than banks, medical, gov, they're doing it wrong.
Some times people think the hard part is getting the CA trust setup, but I find it's far more tedious to deal with certain sites and mobile apps especially that do certificate pinning.