Events & Awards

Live from Conclave: Understanding Cybersecurity Risks

Events & AwardsApr 25, 2018

Live from Conclave: Understanding Cybersecurity Risks

Do your employees understand when an email should raise alarm bells? And are you patching your software when prompted?

Nashville, Tenn.—The hacks that make headlines are the ones that involve big companies and thousands, if not millions or billions, of files of customer data—Equifax, Yahoo and, most recently, Saks Fifth Avenue and Lord & Taylor. 

But that doesn’t mean a small business, like a family-owned jewelry store, can’t be hacked. 

“Every organization is a target,” Mary Myers, an information security analyst with Jewelers Mutual Insurance Group, said. “There are just different rationales for why.” 

Myers presented a breakout session Monday morning at Conclave outlining the cybersecurity risks businesses face and detailing what jewelers should do if they are hacked.

She started with social engineering and phishing. 

Social engineering is the act of manipulating employees into doing something they otherwise would not do. Phishing is social engineering via email and can involve attachments, directing the recipient to fake websites, or fake emails.

Myers said phishing emails are often unexpected and written in a way that makes them seem urgent (your immediate reply is requested, etc.).

While they can contain misspellings and grammatical errors, she noted that hackers are getting smarter and cleaning up their emails so there are fewer of these. Phishing messages also can come from email addresses that are nearly identical to (or exactly the same as, which is called spoofing) those of people with whom the business owner and/or employees communicate regularly. 

The emails try to bait the the receiver into replying and engaging in a conversation, opening an attachment or clicking a link for the purposes of installing malware on the business’ computer systems.

The malware widely in use by hackers right now is called ransomware, Myers said. Hackers lock victims’ computers with encryption and demand they pay a ransom, via Bitcoin, to get their data back. 

Her initial recommendation is, of course, not to click on links or open the attachments in emails that seem suspicious. Delete the email, call the sender and ask if they sent that specific email with an attachment or consult IT support.

But that doesn’t always happen.

When a business owner or employee falls for a phish, Myers said options are somewhat limited. 

She said what business owners should not do is pay, as there is no guarantee they will get their data back. 
They should stop their system backup, wipe infected systems and devices, and restore using what was backed up before the malware was installed. (Systems need to be backed up regularly. Myers recommends having a set, repeating cycle; for example, it backs up every day at midnight.)

Jewelers also face cybersecurity risks from both employees and vendors/contractors who could accidentally load a virus onto a system by clicking a phishing link or visiting a disreputable site, or who could violate a business intentionally, by purposely loading or sending a virus or sharing sensitive customer information. Myers said business owners need to provide guidance to employees, vendors and contractors and to clearly define: what does acceptable internet use at the company look like?

While not heavily attended, the Conclave session did generate multiple questions from attendees.

One jeweler asked if should she turn off her servers at night to help protect against attacks. You can, Myers answered, but it won’t necessarily prevent anything, as some of this software is malware designed to enter the system and lie dormant until it can be activated.

Another asked if paid-for anti-virus software is better than free. Myers said anything that will help a business quarantine and clean up a virus is “great.” What will work best a particular business really depends on its size, needs and risk factors.

Myers wrapped up with a list of a half-dozen additional tips for increasing cybersecurity.
1. Keep an inventory of key systems and applications.

2. Keep an inventory of risks and threats, and use multiple layers of security.

3. Keep systems and devices patched.

All software has “gaps” that make it vulnerable to hackers, Myers said. “Patches” are released regularly by software companies and are intended to seal those gaps. Microsoft releases patches for its software on a monthly basis, but probably the most well-known example of a patch are the “updates” Apple regularly sends for iPhones and iPads.
 
“If you don’t close it,” Myers said of the gap, “you’re exposed. Patching is super, super critical.”

4. Back up systems and, Myers added, test the back-up.

Having a virus-infected system is going to create an “emotionally charged” situation. She said business owners don’t want that to be the first time they’ve ever walked through the process of employing their back-up.

5. Establish separation in key systems.

Business owners who host their own websites should separate it internally and not have it on the same server as the rest of their data. They also need to rotate job duties. They can’t “give the keys to the kingdom” to one person; hackers would have to have access to several people if there's separation.

Also, when someone leaves the company, take away their access to the company’s systems.

6. Train employees on cyber risks at least annually, if not quarterly.

In response to one jeweler’s question, Myers said business owners can require employees who connect personal devices to the store’s Wi-Fi to update those devices when prompted. She recommended writing it into the store’s policy.

The JSA also recently released a list of cybersecurity recommends, which was included in National Jeweler’s article about Saks getting hacked.

Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

Tiffany & Co. Love Is a Gift Campaign and David Yurman The Joy of Extraordinary Memories campaign
MajorsNov 10, 2025
Jewelers Focus on Love, Joy In 2025 Holiday Campaigns

Tiffany & Co., David Yurman, and Pandora have launched holiday campaigns depicting their jewelry as symbols of affection and happiness.

Hand holding holiday shopping bags
SurveysNov 10, 2025
5 Things Retailers Should Know About Holiday Shoppers This Year

The National Retail Federation is bullish on the holidays, forecasting retail sales to exceed $1 trillion this year.

The Rainbow Collection Christies
AuctionsNov 10, 2025
300+ Colored Diamonds Up for Auction at Christie’s

Late collector Eddy Elzas assembled “The Rainbow Collection,” which is offered as a single lot and estimated to fetch up to $3 million.

roseco-catalog.png
Brought to you by
Roseco Releases New Full-Line Catalog

Roseco’s 704-page catalog showcases new lab-grown diamonds, findings, tools & more—available in print or interactive digital editions.

 Sapphire tennis necklace
EditorsNov 07, 2025
Piece of the Week: An MVP’s Sapphire Tennis Necklace

At the 2025 World Series, the Los Angeles Dodgers’ Yoshinobu Yamamoto sported a custom necklace made by California retailer Happy Jewelers.

Weekly QuizNov 06, 2025
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Foundrae Palm Beach Location Exterior and Founder Beth Hutchens
IndependentsNov 07, 2025
Foundrae’s New Palm Beach Location Is a ‘Golden Solarium’

The brand’s seventh location combines Foundrae’s symbolic vocabulary with motifs from Florida’s natural surroundings.

Watches of Switzerland Mall of America store
FinancialsNov 07, 2025
Watches of Switzerland’s H1 Sales Up 8%

The retailer also shared an update on the impact of tariffs on watch customers.

20-Under-40-2025-LV.png
Brought to you by
Jewelers of America Aligns New Mission to Create Meaningful Impact for Members

From educational programs, advocacy, and recent MJSA affiliation, Jewelers of America drives progress that elevates businesses of all sizes.

AGTA Spectrum winners
SourcingNov 06, 2025
Pink Tourmaline Bracelet, Emerald Suite Take Top Spectrum Honors

Pink and purple stones were popular in the AGTA’s design competition this year, as were cameos and ocean themes.

G. St x Jewel Boxing Raffle for City Harvest Graphic
IndependentsNov 06, 2025
Greenwich St. Jewelers Hosts Raffle Supporting Food Rescue

All proceeds from the G. St x Jewel Boxing raffle will go to City Harvest, which works to end hunger in New York City.

Courtney Cornell
IndependentsNov 06, 2025
Cornell’s Jewelers Names New President

Courtney Cornell is part of the third generation to lead the Rochester, New York-based jeweler.

Trucks at Orapa diamond mine
SourcingNov 06, 2025
De Beers’ Production, Sales Increase in Q3

De Beers also announced more changes in its upper ranks ahead of parent company Anglo American’s pending sale of the company.

Ulrich Wohn
WatchesNov 05, 2025
Shinola President Steps Down Just as He Starts

Former Signet CEO Mark Light will remain president of Shinola until a replacement for Ulrich Wohn is found.

Artifex White Diamond, Fancy Dark Yellowish Brown Diamond, and Blue Sapphire Rings
AuctionsNov 05, 2025
Taylor Swift’s Engagement Ring Designer Makes Her Auction Debut

Kindred Lubeck of Artifex has three rings she designed with Anup Jogani in Sotheby’s upcoming Gem Drop sale.

Tyla Pandora Talisman collection
FinancialsNov 05, 2025
Pandora Posts Modest Q3 Sales Growth Amid ‘Weak’ Consumer Sentiment

The company focused on marketing in the third quarter and introduced two new charm collections, “Pandora Talisman” and “Pandora Minis.”

Brilliant Earth Jane Goodall Peace Medallion
FinancialsNov 05, 2025
Brilliant Earth’s Q3 Sales Climb 10%

The jewelry retailer raised its full-year guidance, with CFO Jeff Kuo describing the company as “very well positioned” for the holidays.

US Supreme Court
Policies & IssuesNov 04, 2025
Supreme Court to Hear Tariffs Case Wednesday

Ahead of the hearing, two industry organizations co-signed an amicus brief urging the court to declare Trump’s tariffs unlawful.

Stuller Inc.’s Danny Clark, Matt Stuller, and Belit Myers
MajorsNov 04, 2025
Danny Clark to Become Stuller CEO, Succeeding Matt Stuller

Stuller COO Belit Myers will take on the additional role of president, with all changes effective at the start of 2026.

Headshot of National Jeweler columnist Peter Smith
ColumnistsNov 04, 2025
Peter Smith: What Do Birds Have to Do With the Price of Gold?

Smith cautions retailers against expending too much energy on things they can’t control, like the rising price of gold.

Mellerio Jardin Pierreries Necklace
TrendsNov 04, 2025
Amanda’s Style File: Fall Colors for November Birthdays

Citrine and topaz are birthstones fit for fall as the leaves change color and the holiday season approaches.

Weston Jewelers Fort Lauderdale store rendering
IndependentsNov 04, 2025
Weston Jewelers Heads to Fort Lauderdale

The family-owned jeweler will open its fourth store in Florida in late 2027.

Two of the three suspects in burglary at Queens jeweler’s home
CrimeNov 03, 2025
Men Dressed as Construction Workers Burglarize Jeweler’s Home

The NYPD is looking for three men who stole a safe and jewelry valued at $3.2 million from the home of a jeweler in Jamaica Hills, Queens.

Matthew Rosenheim
MajorsNov 03, 2025
Matthew Rosenheim Takes Over as JA Board Chair

The trade organization also announced its executive committee and five new directors.

Muse’s Have a Heart x Diamonds Do Good Collection on Flaviana Matata
CollectionsNov 03, 2025
Muse’s ‘Have a Heart’ Collab Returns, Now With DDG

The “Have a Heart x Diamonds Do Good” collection is championed by model and humanitarian Flaviana Matata and will benefit her foundation.

Christies Kashmir sapphire ring
AuctionsNov 03, 2025
Kashmir Sapphire Ring Tops Christie's Online Auction

The ring, set with a nearly 17-carat Kashmir cabochon sapphire, sold for $1 million.

Heavenly Vices Mother Father Spinner Necklace
TrendsOct 31, 2025
Piece of the Week: A Spinner Fit for ‘Frankenstein’

This “Mother Father” spinner necklace from Heavenly Vices Fine Jewelry draws inspiration from Victorian Era jewelry.

Interpol Stolen Works of Art Database, The Louvre Museum Graphic
CrimeOct 31, 2025
5 More Arrested in Louvre Heist, Jewelry Still Missing

The suspects were rounded up in Paris and its suburbs on Wednesday night, but none of the stolen jewels were recovered with them.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy