Events & Awards

Live from Conclave: Understanding Cybersecurity Risks

Events & AwardsApr 25, 2018

Live from Conclave: Understanding Cybersecurity Risks

Do your employees understand when an email should raise alarm bells? And are you patching your software when prompted?

Nashville, Tenn.—The hacks that make headlines are the ones that involve big companies and thousands, if not millions or billions, of files of customer data—Equifax, Yahoo and, most recently, Saks Fifth Avenue and Lord & Taylor. 

But that doesn’t mean a small business, like a family-owned jewelry store, can’t be hacked. 

“Every organization is a target,” Mary Myers, an information security analyst with Jewelers Mutual Insurance Group, said. “There are just different rationales for why.” 

Myers presented a breakout session Monday morning at Conclave outlining the cybersecurity risks businesses face and detailing what jewelers should do if they are hacked.

She started with social engineering and phishing. 

Social engineering is the act of manipulating employees into doing something they otherwise would not do. Phishing is social engineering via email and can involve attachments, directing the recipient to fake websites, or fake emails.

Myers said phishing emails are often unexpected and written in a way that makes them seem urgent (your immediate reply is requested, etc.).

While they can contain misspellings and grammatical errors, she noted that hackers are getting smarter and cleaning up their emails so there are fewer of these. Phishing messages also can come from email addresses that are nearly identical to (or exactly the same as, which is called spoofing) those of people with whom the business owner and/or employees communicate regularly. 

The emails try to bait the the receiver into replying and engaging in a conversation, opening an attachment or clicking a link for the purposes of installing malware on the business’ computer systems.

The malware widely in use by hackers right now is called ransomware, Myers said. Hackers lock victims’ computers with encryption and demand they pay a ransom, via Bitcoin, to get their data back. 

Her initial recommendation is, of course, not to click on links or open the attachments in emails that seem suspicious. Delete the email, call the sender and ask if they sent that specific email with an attachment or consult IT support.

But that doesn’t always happen.

When a business owner or employee falls for a phish, Myers said options are somewhat limited. 

She said what business owners should not do is pay, as there is no guarantee they will get their data back. 
They should stop their system backup, wipe infected systems and devices, and restore using what was backed up before the malware was installed. (Systems need to be backed up regularly. Myers recommends having a set, repeating cycle; for example, it backs up every day at midnight.)

Jewelers also face cybersecurity risks from both employees and vendors/contractors who could accidentally load a virus onto a system by clicking a phishing link or visiting a disreputable site, or who could violate a business intentionally, by purposely loading or sending a virus or sharing sensitive customer information. Myers said business owners need to provide guidance to employees, vendors and contractors and to clearly define: what does acceptable internet use at the company look like?

While not heavily attended, the Conclave session did generate multiple questions from attendees.

One jeweler asked if should she turn off her servers at night to help protect against attacks. You can, Myers answered, but it won’t necessarily prevent anything, as some of this software is malware designed to enter the system and lie dormant until it can be activated.

Another asked if paid-for anti-virus software is better than free. Myers said anything that will help a business quarantine and clean up a virus is “great.” What will work best a particular business really depends on its size, needs and risk factors.

Myers wrapped up with a list of a half-dozen additional tips for increasing cybersecurity.
1. Keep an inventory of key systems and applications.

2. Keep an inventory of risks and threats, and use multiple layers of security.

3. Keep systems and devices patched.

All software has “gaps” that make it vulnerable to hackers, Myers said. “Patches” are released regularly by software companies and are intended to seal those gaps. Microsoft releases patches for its software on a monthly basis, but probably the most well-known example of a patch are the “updates” Apple regularly sends for iPhones and iPads.
 
“If you don’t close it,” Myers said of the gap, “you’re exposed. Patching is super, super critical.”

4. Back up systems and, Myers added, test the back-up.

Having a virus-infected system is going to create an “emotionally charged” situation. She said business owners don’t want that to be the first time they’ve ever walked through the process of employing their back-up.

5. Establish separation in key systems.

Business owners who host their own websites should separate it internally and not have it on the same server as the rest of their data. They also need to rotate job duties. They can’t “give the keys to the kingdom” to one person; hackers would have to have access to several people if there's separation.

Also, when someone leaves the company, take away their access to the company’s systems.

6. Train employees on cyber risks at least annually, if not quarterly.

In response to one jeweler’s question, Myers said business owners can require employees who connect personal devices to the store’s Wi-Fi to update those devices when prompted. She recommended writing it into the store’s policy.

The JSA also recently released a list of cybersecurity recommends, which was included in National Jeweler’s article about Saks getting hacked.

Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

Kendra Scott CEO Chris Blakeslee
MajorsJan 09, 2026
Kendra Scott Taps Activewear Exec as CEO

Chris Blakeslee has experience at Athleta and Alo Yoga. Kendra Scott will remain on board as executive chair and chief visionary officer.

Wrapped holiday present boxes
SurveysJan 09, 2026
U.S. Holiday Retail Sales Up 4%, Visa, Mastercard Say

The credit card companies’ surveys examined where consumers shopped, what they bought, and what they valued this holiday season.

Christie’s Kimberly Miller
AuctionsJan 09, 2026
Christie’s Names New Global Managing Director for Luxury

Kimberly Miller has been promoted to the role.

Recipients Collage 2025 - NJ (1872 x 1050 px) (1872 x 1052 px).png
Brought to you by
Impacting Tomorrow Today

How Jewelers of America’s 20 Under 40 are leading to ensure a brighter future for the jewelry industry.

Lionheart Serenity Opal Amulet Charm
CollectionsJan 09, 2026
Piece of the Week: Lionheart’s ‘Serenity’ Opal Charm

The “Serenity” charm set with 13 opals is a modern amulet offering protection, guidance, and intention, the brand said.

Weekly QuizJan 08, 2026
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Hannah Dodd and Claudia Jessie in Pandora Bridgerton campaign
CollectionsJan 08, 2026
Pandora’s New ‘Bridgerton’ Jewels Celebrate Bees, Bows, and Blooms

“Bridgerton” actresses Hannah Dodd and Claudia Jessie star in the brand’s “Rules to Love By” campaign.

Stuller’s Color of the Year for 2026, “Signature Red”
TrendsJan 08, 2026
Stuller’s Color of the Year Is a Stark Contrast to Pantone’s White

The jewelry manufacturer and supplier is going with a fiery shade it says symbolizes power and transformation.

roseco-catalog.png
Brought to you by
Roseco Releases New Full-Line Catalog

Roseco’s 704-page catalog showcases new lab-grown diamonds, findings, tools & more—available in print or interactive digital editions.

Gracie Abrams Chanel Coco Crush
CollectionsJan 08, 2026
Gracie Abrams To Front New Chanel Jewelry Campaign

The singer-songwriter will make her debut as the French luxury brand’s new ambassador in a campaign for its “Coco Crush” jewelry line.

Bobbi L. Avery, Jeffery Bolling, Britney Phillips, and Lindsay Salvo
MajorsJan 08, 2026
Diamond Council of America Names New Board Directors

The nonprofit’s new president and CEO, Annie Doresca, also began her role this month.

Headshot of National Jewler columnist Peter Smith
ColumnistsJan 07, 2026
Peter Smith: Physical Retail—The Beginning or the End?

As the shopping mall model evolves and online retail grows, Smith shares his predictions for the future of physical stores.

Akiva Gil garnet ring
TrendsJan 07, 2026
Amanda’s Style File: Go for Garnet

January’s birthstone comes in a rainbow of colors, from the traditional red to orange, purple, and green.

Diamonds Do Good 2025 Impact Report
SourcingJan 07, 2026
Diamonds Do Good Releases 2025 Impact Report

The annual report highlights how it supported communities in areas where natural diamonds are mined, crafted, and sold.

Police cars with lights on
CrimeJan 06, 2026
2 Jewelers Arrested After TraxNYC Diamond District Brawl

Footage of a fight breaking out in the NYC Diamond District was viewed millions of times on Instagram and Facebook.

Rio Grande xTool F2 Ultra Portable Laser Engraver Bundle
MajorsJan 06, 2026
Rio Grande Says These Are the Top Personalization Tools for 2026

The supplier has a curated list of must-have tools for jewelers doing in-house custom work this year.

Zales storefront
MajorsJan 06, 2026
Zales Tests Out A New Look

The Signet Jewelers-owned store, which turned 100 last year, calls its new concept stores “The Edit.”

Linda Coutu
MajorsJan 06, 2026
LeachGarner Appoints New Director of Sales

Linda Coutu is rejoining the precious metals provider as its director of sales.

AGA board 2026-2029
SourcingJan 06, 2026
AGA Announces 2026 Board

The governing board welcomed two new members, Claire Scragg and Susan Eisen.

Jenna Blake diamond Fan earrings
TrendsJan 05, 2026
Amanda’s Style File: New Year’s Edition

Sparkle with festive diamond jewelry as we celebrate the beginning of 2026.

Ben Nighthorse Campbell
IndependentsJan 05, 2026
Jeweler Ben Nighthorse Campbell Dies at 92

The master jeweler, Olympian, former senator, and Korean War veteran founded the brand Nighthorse Jewelry.

Jacquie Aiche Alien Heart Eye Inlay Necklace, Cicada Dragonfly Brooch, Harkness After the Rain Earrings
TrendsJan 05, 2026
Pinterest 2026 Trend Report: Brooches, Bold Gold, Cool Blue

In its annual report, Pinterest noted an increase in searches for brooches, heirloom jewelry, and ‘80s luxury.

Saks Fifth Avenue flagship window installation
MajorsJan 02, 2026
Marc Metrick Out as CEO of Saks Global

Executive Chairman Richard Baker will take over the role as rumors swirl that a bankruptcy filing is imminent for the troubled retailer.

Couture Retailer Liaison Jan Mohr
Events & AwardsJan 02, 2026
Jan Mohr, Couture’s ‘North Star,’ Dies at 71

Mohr had just retired in June after more than two decades as Couture’s retailer liaison.

Shekhar Shah Real Gems
SourcingJan 02, 2026
IDCA Elects New President, Board of Directors

Shekhar Shah of Real Gems Inc. will serve as president of the Indian Diamond & Colorstone Association in 2026.

Lalaounis good luck charm 2026
CollectionsJan 02, 2026
Lalaounis’ 2026 Good Luck Charm Speaks to Resilience

This year’s good luck charm features the mythical horse Pegasus, and is our first Piece of the Week of the new year.

Collage of NationalJeweler.com’s most-read stories of 2025
EditorsDec 31, 2025
The Top 5 Stories of 2025

Articles about crime, engagement rings, and a necklace worn in the World Series generated the most interest among readers.

Becka Johnson Kibby
MajorsDec 30, 2025
Becka Johnson Kibby to Lead Edge Retail Academy

As part of the leadership transition, Sherry Smith will take on the role of vice president of coaching strategy and development.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy