USPhalanxSec audits, monitors, and hardens Google Workspace and Microsoft 365 tenants — closing OAuth gaps, triaging phishing in near real time, and giving leadership a report they actually understand.
PhalanxSec was built to eliminate security gaps across Google Workspace and Microsoft 365. We focus exclusively on protecting user identities, auditing OAuth permissions, and triaging phishing lures in real time for US and LATAM organizations.
The team works exclusively inside Google Workspace and Microsoft 365 — no generic SOC noise, no unrelated cloud platforms. That focus is what lets the team support client organizations without dropping detail.
Percentage of client mailboxes and OAuth grants under active monitoring.
Continuous identity guardrails across Workspace and 365.
Proactive containment before unauthorized access occurs.
Identity is the last perimeter that still matters. USPhalanxSec exists to make sure it's the one that holds — even after the network, the endpoint, and the inbox have already been probed.
Every new app, scope, and shared drive gets reviewed against a standing policy — not discovered six months later during an audit.
Phishing doesn't wait for a quarterly review. Our triage loop moves from report to containment in minutes, not tickets.
Security metrics that translate into board-level language — risk reduced, exposure closed, dollars saved.
Each engagement is scoped to your tenant's actual risk surface — not a generic checklist.
Continuous review of admin roles, shared drives, group memberships, and conditional access across Google Workspace and Microsoft 365 — mapped to least-privilege baselines.
A monitored intake for reported lures with response times measured in minutes: header analysis, sender reputation, mailbox quarantine, and user notification.
Inventory and risk-score every third-party app with tenant access, revoke unused or overprivileged grants, and enforce an approval workflow for new integrations.
An anonymized excerpt from a real monthly executive report format.
| Finding | Severity | Status |
|---|---|---|
| OAuth app "BudgetSync Pro" holds unused Gmail.readwrite scope | High | Revoked |
| 4 mailboxes missing hardware key enforcement | Medium | In progress |
| Shared drive "2019 Contracts" open to link-anyone access | Medium | Remediated |
| Legacy service account unused for 94 days | Low | Flagged |
| Forwarding rule auto-routing invoices to external domain | High | Removed |
Send a note and an analyst will follow up within one business day with next steps for a scoped audit.