Either a company block traffic or allows it.
Inconspicuously inspecting traffic to spy on people, even employees, is just bad.
I work at a company that once turned it on for GitHub.com.
All builds that pulled stuff from GitHub started to fail because all those Docker containers don't have the company's root CA trusted.