Events & Awards

Live from Conclave: Understanding Cybersecurity Risks

Events & AwardsApr 25, 2018

Live from Conclave: Understanding Cybersecurity Risks

Do your employees understand when an email should raise alarm bells? And are you patching your software when prompted?

Nashville, Tenn.—The hacks that make headlines are the ones that involve big companies and thousands, if not millions or billions, of files of customer data—Equifax, Yahoo and, most recently, Saks Fifth Avenue and Lord & Taylor. 

But that doesn’t mean a small business, like a family-owned jewelry store, can’t be hacked. 

“Every organization is a target,” Mary Myers, an information security analyst with Jewelers Mutual Insurance Group, said. “There are just different rationales for why.” 

Myers presented a breakout session Monday morning at Conclave outlining the cybersecurity risks businesses face and detailing what jewelers should do if they are hacked.

She started with social engineering and phishing. 

Social engineering is the act of manipulating employees into doing something they otherwise would not do. Phishing is social engineering via email and can involve attachments, directing the recipient to fake websites, or fake emails.

Myers said phishing emails are often unexpected and written in a way that makes them seem urgent (your immediate reply is requested, etc.).

While they can contain misspellings and grammatical errors, she noted that hackers are getting smarter and cleaning up their emails so there are fewer of these. Phishing messages also can come from email addresses that are nearly identical to (or exactly the same as, which is called spoofing) those of people with whom the business owner and/or employees communicate regularly. 

The emails try to bait the the receiver into replying and engaging in a conversation, opening an attachment or clicking a link for the purposes of installing malware on the business’ computer systems.

The malware widely in use by hackers right now is called ransomware, Myers said. Hackers lock victims’ computers with encryption and demand they pay a ransom, via Bitcoin, to get their data back. 

Her initial recommendation is, of course, not to click on links or open the attachments in emails that seem suspicious. Delete the email, call the sender and ask if they sent that specific email with an attachment or consult IT support.

But that doesn’t always happen.

When a business owner or employee falls for a phish, Myers said options are somewhat limited. 

She said what business owners should not do is pay, as there is no guarantee they will get their data back. 
They should stop their system backup, wipe infected systems and devices, and restore using what was backed up before the malware was installed. (Systems need to be backed up regularly. Myers recommends having a set, repeating cycle; for example, it backs up every day at midnight.)

Jewelers also face cybersecurity risks from both employees and vendors/contractors who could accidentally load a virus onto a system by clicking a phishing link or visiting a disreputable site, or who could violate a business intentionally, by purposely loading or sending a virus or sharing sensitive customer information. Myers said business owners need to provide guidance to employees, vendors and contractors and to clearly define: what does acceptable internet use at the company look like?

While not heavily attended, the Conclave session did generate multiple questions from attendees.

One jeweler asked if should she turn off her servers at night to help protect against attacks. You can, Myers answered, but it won’t necessarily prevent anything, as some of this software is malware designed to enter the system and lie dormant until it can be activated.

Another asked if paid-for anti-virus software is better than free. Myers said anything that will help a business quarantine and clean up a virus is “great.” What will work best a particular business really depends on its size, needs and risk factors.

Myers wrapped up with a list of a half-dozen additional tips for increasing cybersecurity.
1. Keep an inventory of key systems and applications.

2. Keep an inventory of risks and threats, and use multiple layers of security.

3. Keep systems and devices patched.

All software has “gaps” that make it vulnerable to hackers, Myers said. “Patches” are released regularly by software companies and are intended to seal those gaps. Microsoft releases patches for its software on a monthly basis, but probably the most well-known example of a patch are the “updates” Apple regularly sends for iPhones and iPads.
 
“If you don’t close it,” Myers said of the gap, “you’re exposed. Patching is super, super critical.”

4. Back up systems and, Myers added, test the back-up.

Having a virus-infected system is going to create an “emotionally charged” situation. She said business owners don’t want that to be the first time they’ve ever walked through the process of employing their back-up.

5. Establish separation in key systems.

Business owners who host their own websites should separate it internally and not have it on the same server as the rest of their data. They also need to rotate job duties. They can’t “give the keys to the kingdom” to one person; hackers would have to have access to several people if there's separation.

Also, when someone leaves the company, take away their access to the company’s systems.

6. Train employees on cyber risks at least annually, if not quarterly.

In response to one jeweler’s question, Myers said business owners can require employees who connect personal devices to the store’s Wi-Fi to update those devices when prompted. She recommended writing it into the store’s policy.

The JSA also recently released a list of cybersecurity recommends, which was included in National Jeweler’s article about Saks getting hacked.

Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

Anza Gems gemstones
SourcingJan 28, 2026
Ethical Gem Fair to Debut Designer Showcase in Tucson

The new addition will feature finished jewelry created using “consciously sourced” gemstones.

National Jeweler columnist and jewelry sales expert Peter Smith
ColumnistsJan 28, 2026
Peter Smith: Setting the Next Generation Up for Success

In his new column, Smith advises playing to your successor's strengths and resisting the urge to become a backseat driver.

Hand holding shopping bags
SurveysJan 28, 2026
Consumer Confidence Falls Below Pandemic Lows in January

The index fell to its lowest level since May 2014 amid concerns about the present and the future.

MJSA Apprenticeship Guide
Brought to you by
The MJSA Mentor & Apprenticeship Program: Attracting & Training the Next Generation of Bench Jewelers

Launched in 2023, the program will help the passing of knowledge between generations and alleviate the shortage of bench jewelers.

Foundrae Aspen Store
IndependentsJan 28, 2026
Foundrae Heads to Aspen for Latest Store Opening

The new store in Aspen, Colorado, takes inspiration from a stately library for its intimate yet elevated interior design.

Weekly QuizJan 22, 2026
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Bulgari Gioco di Forme e Colori watch and brooch
FinancialsJan 28, 2026
Tiffany & Co., Bulgari Sales Resilient as LVMH’s 2025 Sales Slip

The brands’ high jewelry collections performed especially well last year despite a challenging environment.

GemFair x DBL Toi et Moi Ring
CollectionsJan 27, 2026
De Beers London, GemFair Debut New Collection Highlighting Artisanal Diamonds

The collection marks the first time GemFair’s artisanal diamonds will be brought directly to consumers.

JamAlert 1872x1052.png
Brought to you by
How Jewelers Can Fight Back Against Cell Jammers

Criminals are using cell jammers to disable alarms, but new technology like JamAlert™ can stop them.

Montana sapphire
SourcingJan 27, 2026
GemGuide Launches Pricing for Montana Sapphires

The initial charts are for blue, teal, and green material, each grouped into three charts categorized as good, fine, and extra fine.

Clientbook
TechnologyJan 27, 2026
Clientbook Launches Appointment Booking Tool

The new tool can assign the appropriate associate based on the client or appointment type and automate personalized text message follow-ups.

Columbia Gem House celestial shapes
SourcingJan 26, 2026
Tucson Preview 2026: Earthy Tones and Innovative Shapes

Buyers are expected to gravitate toward gemstones that have a little something special, just like last year.

Diamond center in Saurimo, Angola
SourcingJan 26, 2026
Angolan Diamond Cos. Join NDC as Rio Tinto, Murowa Exit

Endiama and Sodiam will contribute money to the marketing of natural diamonds as new members of the Natural Diamond Council.

Francesca’s boutique
MajorsJan 26, 2026
Francesca’s To Close All Stores

The retailer operates more than 450 boutiques across 45 states, according to its website.

Thomas Davis, Monalisa DePina, Jamie Batiste, Namwezi Nicole Batumike, Lavina Hunt-Lewis
MajorsJan 26, 2026
BIJC Names 5 New Board Members

The new members’ skills span communications, business development, advocacy, and industry leadership.

Tiffany & Co. Celebrating Love Stories Since 1837 Campaign
CollectionsJan 26, 2026
Tiffany & Co. Celebrates 189 Years of Love Stories

The jeweler’s 2026 Valentine’s Day campaign, “Celebrating Love Stories Since 1837,” includes a short firm starring actress Adria Arjona.

DCA colored gemstone course
GradingJan 26, 2026
DCA Updates Colored Gemstone Course

The new features include interactive flashcards and scenario-based roleplay with AI tools.

Deutsch & Deutsch jewelers team
MajorsJan 23, 2026
Watches of Switzerland Acquires 4-Store Jewelry Chain in Texas

Family-owned jewelry and watch retailer Deutsch & Deutsch has stores in El Paso, Laredo, McAllen, and Victoria.

Baume & Mercier Riviera 10812 pink watch
WatchesJan 23, 2026
Damiani Group to Acquire Baume & Mercier

The Italian luxury company purchased the nearly 200-year-old Swiss watch brand from Richemont.

Martin Katz snowflake earrings
TrendsJan 23, 2026
Martin Katz’s Earrings Call to Mind Wintry Weather

Micro-set with hundreds of diamonds, these snowflake earrings recreate “winter’s most elegant silhouette,” and are our Piece of the Week.

Ella Blum
MajorsJan 23, 2026
Rembrandt Charms Names New Director of Creative, Brand Strategy

Ella Blum was appointed to the newly created role.

National-Jeweler_1872x1502_B copy.png
Supplier BulletinJan 22, 2026
The Rise of Centralized Sourcing in the Colored Gemstone Market

Sponsored by RapNet

Lugano Diamonds Greenwich Connecticut store
MajorsJan 22, 2026
Lugano Diamonds Finds a Buyer

Investment firm Enhanced Retail Funding, a division of Gordon Brothers, was the successful bidder.

A Diamond Is Forever book
SourcingJan 22, 2026
De Beers To Release ‘A Diamond Is Forever’ Book

It explores the history of the iconic tagline and the company’s strategy to redefine the role of diamonds in society.

Sindhu Culas
MajorsJan 22, 2026
Swarovski Appoints New North America President

Retail veteran Sindhu Culas has stepped into the role.

Taylor Burgess
MajorsJan 22, 2026
Stuller Names New Chief Merchandising, Marketing, Sales Officer

Taylor Burgess, who has been at Stuller since 2013, was promoted to the newly created role.

My Next Question podcast with Sherry Smith and Edahn Golan
PodcastsJan 21, 2026
Episode 1: High Gold Prices, the Diamond Dilemma, & What’s Next

Was 2025 a good year for jewelers? Did lab-grown diamonds outsell natural? Find out on the first episode of the “My Next Question” podcast.

Jules Kim of Bijules, Sophie Howard of By Pariah, Jade Ruzzo, Joy Haugaard of Lionheart, Vanessa Fernández of Vanessa Fernández Studio, Hiba Husayni of Zahn-Z
EditorsJan 21, 2026
6 Jewelry Designers Poised to Have a Breakout Year in 2026

Whether you recognize their jewels or are just discovering them now, these designers’ talent and vision make them ones to watch this year.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy