Events & Awards

Live from Conclave: Understanding Cybersecurity Risks

Events & AwardsApr 25, 2018

Live from Conclave: Understanding Cybersecurity Risks

Do your employees understand when an email should raise alarm bells? And are you patching your software when prompted?

Nashville, Tenn.—The hacks that make headlines are the ones that involve big companies and thousands, if not millions or billions, of files of customer data—Equifax, Yahoo and, most recently, Saks Fifth Avenue and Lord & Taylor. 

But that doesn’t mean a small business, like a family-owned jewelry store, can’t be hacked. 

“Every organization is a target,” Mary Myers, an information security analyst with Jewelers Mutual Insurance Group, said. “There are just different rationales for why.” 

Myers presented a breakout session Monday morning at Conclave outlining the cybersecurity risks businesses face and detailing what jewelers should do if they are hacked.

She started with social engineering and phishing. 

Social engineering is the act of manipulating employees into doing something they otherwise would not do. Phishing is social engineering via email and can involve attachments, directing the recipient to fake websites, or fake emails.

Myers said phishing emails are often unexpected and written in a way that makes them seem urgent (your immediate reply is requested, etc.).

While they can contain misspellings and grammatical errors, she noted that hackers are getting smarter and cleaning up their emails so there are fewer of these. Phishing messages also can come from email addresses that are nearly identical to (or exactly the same as, which is called spoofing) those of people with whom the business owner and/or employees communicate regularly. 

The emails try to bait the the receiver into replying and engaging in a conversation, opening an attachment or clicking a link for the purposes of installing malware on the business’ computer systems.

The malware widely in use by hackers right now is called ransomware, Myers said. Hackers lock victims’ computers with encryption and demand they pay a ransom, via Bitcoin, to get their data back. 

Her initial recommendation is, of course, not to click on links or open the attachments in emails that seem suspicious. Delete the email, call the sender and ask if they sent that specific email with an attachment or consult IT support.

But that doesn’t always happen.

When a business owner or employee falls for a phish, Myers said options are somewhat limited. 

She said what business owners should not do is pay, as there is no guarantee they will get their data back. 
They should stop their system backup, wipe infected systems and devices, and restore using what was backed up before the malware was installed. (Systems need to be backed up regularly. Myers recommends having a set, repeating cycle; for example, it backs up every day at midnight.)

Jewelers also face cybersecurity risks from both employees and vendors/contractors who could accidentally load a virus onto a system by clicking a phishing link or visiting a disreputable site, or who could violate a business intentionally, by purposely loading or sending a virus or sharing sensitive customer information. Myers said business owners need to provide guidance to employees, vendors and contractors and to clearly define: what does acceptable internet use at the company look like?

While not heavily attended, the Conclave session did generate multiple questions from attendees.

One jeweler asked if should she turn off her servers at night to help protect against attacks. You can, Myers answered, but it won’t necessarily prevent anything, as some of this software is malware designed to enter the system and lie dormant until it can be activated.

Another asked if paid-for anti-virus software is better than free. Myers said anything that will help a business quarantine and clean up a virus is “great.” What will work best a particular business really depends on its size, needs and risk factors.

Myers wrapped up with a list of a half-dozen additional tips for increasing cybersecurity.
1. Keep an inventory of key systems and applications.

2. Keep an inventory of risks and threats, and use multiple layers of security.

3. Keep systems and devices patched.

All software has “gaps” that make it vulnerable to hackers, Myers said. “Patches” are released regularly by software companies and are intended to seal those gaps. Microsoft releases patches for its software on a monthly basis, but probably the most well-known example of a patch are the “updates” Apple regularly sends for iPhones and iPads.
 
“If you don’t close it,” Myers said of the gap, “you’re exposed. Patching is super, super critical.”

4. Back up systems and, Myers added, test the back-up.

Having a virus-infected system is going to create an “emotionally charged” situation. She said business owners don’t want that to be the first time they’ve ever walked through the process of employing their back-up.

5. Establish separation in key systems.

Business owners who host their own websites should separate it internally and not have it on the same server as the rest of their data. They also need to rotate job duties. They can’t “give the keys to the kingdom” to one person; hackers would have to have access to several people if there's separation.

Also, when someone leaves the company, take away their access to the company’s systems.

6. Train employees on cyber risks at least annually, if not quarterly.

In response to one jeweler’s question, Myers said business owners can require employees who connect personal devices to the store’s Wi-Fi to update those devices when prompted. She recommended writing it into the store’s policy.

The JSA also recently released a list of cybersecurity recommends, which was included in National Jeweler’s article about Saks getting hacked.

Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

QVC Group logo
MajorsApr 07, 2026
QVC Group’s Latest Filing Calls Its Future Into Question

The retailer failed to file its annual report on time and said it may issue a going concern warning.

Headshot of National Jeweler columnist Peter Smith
ColumnistsApr 07, 2026
Peter Smith: A Tip to the Post Office on Workplace Culture

Smith recounts a recent trip to the post office that included an uncomfortable, embarrassing, and public exchange between two employees.

Retiring GIA CFO David Tearle and new GIA CFO John Cowley
GradingApr 07, 2026
GIA CFO David Tearle to Retire in June

John Cowley, who has more than 30 years of experience, is succeeding Tearle as the lab’s chief financial officer.

GIA iD100®
Brought to you by
Protect Your Customers and Your Business

You deserve to know what you are selling–to protect your customers as well as your business and your reputation.

Gemology Geek Ignite collection tourmaline ring
CollectionsApr 07, 2026
Nerd Out Over Gemology Geek’s First Jewelry Collection

Founder Erica Silverglide has designed 35 colorful pieces set with fluorescing gemstones for the brand's first finished jewelry offering.

Weekly QuizApr 02, 2026
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Ukrainian Jewelry | Contemporary Jewelry and Art Jewelry from Ukraine
CollectionsApr 07, 2026
Ukrainian Jewelers Highlighted In New Book

“Ukrainian Jewelry | Contemporary Jewelry and Art Jewelry from Ukraine” features 33 contemporary Ukrainian designers and studios.

Fope Golden Now Campaign Imagery
CollectionsApr 06, 2026
Fope’s New Jewelry Debuts Are Golden

“The Golden Now” campaign celebrates the here and now with the brand’s signature styles and a selection of its new pieces.

TopImageCrop.jpg
Brought to you by
Is This You? Every Jeweler Has This Problem; We Have the Solution.

Every jeweler faces the same challenge: helping customers protect what they love. Here’s the solution designed for today’s jewelry business.

Former Signet executive Kecia Caffie
MajorsApr 06, 2026
Kecia Caffie, Corinne Bentzen No Longer With Signet Jewelers

Signet confirmed that Caffie, president of Zales and Banter, and Bentzen, who headed Blue Nile, have left the company.

Author Tanzy Ward and her book Precious Black Jewels The Bijou Material Culture of Black Victorians & Edwardians
CollectionsApr 06, 2026
Historian Tanzy Ward Pens Book on Black Victorians’ Jewelry

The antique jewelry dealer talks about the importance of including Black Americans in jewelry history and preserving their stories.

Gemfields emeralds
SourcingApr 06, 2026
Gemfields Reports $51M Loss in 2025

Both its mines faced challenges last year, from operational issues to disruptions in the market.

Screenshot of Taylor Swift's "Elizabeth Taylor" music video
CollectionsApr 03, 2026
Taylor Swift’s ‘Elizabeth Taylor’ Video Puts Jewelry Front and Center

Iconic pieces, like the Mike Todd Diamond Tiara, appear in the superstar’s new music video for her song inspired by the actress.

Neiman Marcus store in Fort Worth, Texas
MajorsApr 03, 2026
Saks Global Says It Will Emerge From Bankruptcy This Summer

The luxury retailer, which went Chapter 11 in January, announced Thursday that it has secured $500 million in exit financing.

Buddha Mama Moon Locket
CollectionsApr 03, 2026
Buddha Mama Brings Its ‘Moon’ Locket To Dallas

The one-of-a-kind locket, our Piece of the Week, opens to reveal three hidden images to keep close to your heart.

Pandora distribution facility Canada
MajorsApr 02, 2026
Pandora Opens New Canadian Distribution Center Amid Tariff Concerns

The new facility was also designed to better serve its growing customer base in Canada.

Michelle Yeoh Mikimoto
TrendsApr 02, 2026
Michelle Yeoh Fronts New Mikimoto Campaign

The campaign is a tribute to the year 1893, when Kokichi Mikimoto created the world’s first cultured pearl.

GIA President and CEO Pritesh Patel at GIA Taiwan campus
GradingApr 02, 2026
GIA Debuts New Campus in Taiwan

It is the only GIA school to offer the GIA Graduate Gemologist program in Chinese.

DCA Second Spark Workforce Initiative Graphic
MajorsApr 02, 2026
DCA Launches ‘Second Spark’ Workforce Initiative

The initiative connects veterans and parents returning to the workforce with careers in jewelry retail.

Michael Angelo
MajorsApr 02, 2026
Hoover & Strong Names New National Sales Representative

The wholesale manufacturer and precious metals refiner has appointed Michael Angelo as its new national sales representative.

Pandora and Foundrae medallion jewelry
MajorsApr 01, 2026
Foundrae Sues Pandora for Allegedly Copying Its Medallion Designs

Foundrae also accused the jewelry giant of copying its mood board style of marketing.

John Jacob Astor IV's Patek Philippe for Tiffany & Co., Battin & Co. pencil case
AuctionsApr 01, 2026
John Jacob Astor IV’s Titanic Pocket Watch Heads to Auction

A Patek Philippe for Tiffany & Co. timepiece owned by the American businessman who died on the Titanic will be offered at Freeman's Chicago.

Stock image of a Shell gas station
SurveysApr 01, 2026
Consumers’ Outlook Improves Again in March

The Conference Board’s Consumer Confidence Index edged up, with optimism about the present outweighing worries about the future.

Zach Bear and the Window Necklace Children’s Book from Zachary’s Jewelers
IndependentsApr 01, 2026
Zachary’s Jewelers’ Constance Polamalu to Release Children’s Book

The retailer’s Zach Bear gift comes to life in “Zach Bear and the Window Necklace,” which centers on curiosity, bravery, and helping.

National Jeweler columnist and Smart Age founder and CEO Emmanuel Raheb
ColumnistsMar 31, 2026
Q1 Clues That Reveal Where Your Jewelry Store’s Sales Are Heading

These customer behavior patterns say a lot about how successful your jewelry store is going to be this year, Emmanuel Raheb writes.

Mejuri Puzzle Collection Campaign Imagery
CollectionsMar 31, 2026
Mejuri Adds Silver to ‘Puzzle’ Collection

Mejuri’s popular collection of 18-karat yellow gold vermeil rings debuted in sterling silver alongside new “Puzzle” slider charms.

Ashley Longshore in Buddha Mama jewelry
CollectionsMar 31, 2026
Buddha Mama, Ashley Longshore to Host Pop-Up in Dallas

The Miami-based jewelry brand and the NYC-based artist will be in Dallas from April 9-11.

Natural Diamond Council world diamond day
SourcingMar 31, 2026
NDC Designates April 8 as 'World Diamond Day'

The initiative invites those in the industry to share stories on social media highlighting the meaning and impact of natural diamonds.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy