Events & Awards

Live from Conclave: Understanding Cybersecurity Risks

Events & AwardsApr 25, 2018

Live from Conclave: Understanding Cybersecurity Risks

Do your employees understand when an email should raise alarm bells? And are you patching your software when prompted?

Nashville, Tenn.—The hacks that make headlines are the ones that involve big companies and thousands, if not millions or billions, of files of customer data—Equifax, Yahoo and, most recently, Saks Fifth Avenue and Lord & Taylor. 

But that doesn’t mean a small business, like a family-owned jewelry store, can’t be hacked. 

“Every organization is a target,” Mary Myers, an information security analyst with Jewelers Mutual Insurance Group, said. “There are just different rationales for why.” 

Myers presented a breakout session Monday morning at Conclave outlining the cybersecurity risks businesses face and detailing what jewelers should do if they are hacked.

She started with social engineering and phishing. 

Social engineering is the act of manipulating employees into doing something they otherwise would not do. Phishing is social engineering via email and can involve attachments, directing the recipient to fake websites, or fake emails.

Myers said phishing emails are often unexpected and written in a way that makes them seem urgent (your immediate reply is requested, etc.).

While they can contain misspellings and grammatical errors, she noted that hackers are getting smarter and cleaning up their emails so there are fewer of these. Phishing messages also can come from email addresses that are nearly identical to (or exactly the same as, which is called spoofing) those of people with whom the business owner and/or employees communicate regularly. 

The emails try to bait the the receiver into replying and engaging in a conversation, opening an attachment or clicking a link for the purposes of installing malware on the business’ computer systems.

The malware widely in use by hackers right now is called ransomware, Myers said. Hackers lock victims’ computers with encryption and demand they pay a ransom, via Bitcoin, to get their data back. 

Her initial recommendation is, of course, not to click on links or open the attachments in emails that seem suspicious. Delete the email, call the sender and ask if they sent that specific email with an attachment or consult IT support.

But that doesn’t always happen.

When a business owner or employee falls for a phish, Myers said options are somewhat limited. 

She said what business owners should not do is pay, as there is no guarantee they will get their data back. 
They should stop their system backup, wipe infected systems and devices, and restore using what was backed up before the malware was installed. (Systems need to be backed up regularly. Myers recommends having a set, repeating cycle; for example, it backs up every day at midnight.)

Jewelers also face cybersecurity risks from both employees and vendors/contractors who could accidentally load a virus onto a system by clicking a phishing link or visiting a disreputable site, or who could violate a business intentionally, by purposely loading or sending a virus or sharing sensitive customer information. Myers said business owners need to provide guidance to employees, vendors and contractors and to clearly define: what does acceptable internet use at the company look like?

While not heavily attended, the Conclave session did generate multiple questions from attendees.

One jeweler asked if should she turn off her servers at night to help protect against attacks. You can, Myers answered, but it won’t necessarily prevent anything, as some of this software is malware designed to enter the system and lie dormant until it can be activated.

Another asked if paid-for anti-virus software is better than free. Myers said anything that will help a business quarantine and clean up a virus is “great.” What will work best a particular business really depends on its size, needs and risk factors.

Myers wrapped up with a list of a half-dozen additional tips for increasing cybersecurity.
1. Keep an inventory of key systems and applications.

2. Keep an inventory of risks and threats, and use multiple layers of security.

3. Keep systems and devices patched.

All software has “gaps” that make it vulnerable to hackers, Myers said. “Patches” are released regularly by software companies and are intended to seal those gaps. Microsoft releases patches for its software on a monthly basis, but probably the most well-known example of a patch are the “updates” Apple regularly sends for iPhones and iPads.
 
“If you don’t close it,” Myers said of the gap, “you’re exposed. Patching is super, super critical.”

4. Back up systems and, Myers added, test the back-up.

Having a virus-infected system is going to create an “emotionally charged” situation. She said business owners don’t want that to be the first time they’ve ever walked through the process of employing their back-up.

5. Establish separation in key systems.

Business owners who host their own websites should separate it internally and not have it on the same server as the rest of their data. They also need to rotate job duties. They can’t “give the keys to the kingdom” to one person; hackers would have to have access to several people if there's separation.

Also, when someone leaves the company, take away their access to the company’s systems.

6. Train employees on cyber risks at least annually, if not quarterly.

In response to one jeweler’s question, Myers said business owners can require employees who connect personal devices to the store’s Wi-Fi to update those devices when prompted. She recommended writing it into the store’s policy.

The JSA also recently released a list of cybersecurity recommends, which was included in National Jeweler’s article about Saks getting hacked.

Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

Brian Patrick Gilbertson
SourcingDec 23, 2025
Mining Titan Brian Gilbertson Dies at 82

The former BHP Billiton leader and Gemfields chairman is remembered for his influential leadership throughout his 50-year mining career.

Kering logo
MajorsDec 23, 2025
Kering to Acquire Stake in Raselli Franco Group

The luxury titan inked a deal to acquire an initial minority stake in the jewelry manufacturer with a pathway to full ownership by 2032.

For Future Reference Vintage
MajorsDec 23, 2025
For Future Reference Vintage Enters Bloomingdale’s

The company’s curation of unsigned vintage and estate jewelry debuted at the Bloomingdale’s in Costa Mesa, California.

Recipients Collage 2025 - NJ (1872 x 1050 px) (1872 x 1052 px).png
Brought to you by
Impacting Tomorrow Today

How Jewelers of America’s 20 Under 40 are leading to ensure a brighter future for the jewelry industry.

Counterfeit Cartier and Audemars Piguet watches
CrimeDec 22, 2025
Customs Seizes Hundreds of Fake Rolex, Cartier Watches

In the recent multi-shipment seizure, CBP also found counterfeit Audemars Piguet, Moncler, and Chrome Hearts items.

Weekly QuizDec 23, 2025
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Helzberg new store concept rendering
EditorsDec 22, 2025
How Helzberg Is Reimagining Its Stores

Helzberg’s Chief Retail Officer Mitch Maggart shared details about its tests of a new store concept rooted in an elevated luxury experience.

Graphic for the 2025 Year-End Webinar
Recorded WebinarsDec 22, 2025
2025 Jewelry Rewind: Looking Back on an Eventful Year

Jewelers of America execs and National Jeweler editors discuss tariffs, the sky-high gold price, and the engagement that broke the internet.

roseco-catalog.png
Brought to you by
Roseco Releases New Full-Line Catalog

Roseco’s 704-page catalog showcases new lab-grown diamonds, findings, tools & more—available in print or interactive digital editions.

Pair of Ippolita Lollatini earrings
MajorsDec 19, 2025
MadaLuxe Group Acquires Ippolita

The luxury goods company said founder Ippolita Rostagno will remain at the brand’s helm.

Bulgari CEO Laura Burdese
MajorsDec 19, 2025
LVMH Names New Bulgari CEO

Laura Burdese, who joined the Italian luxury brand in 2022, will take on the role in July.

Harwell Godfrey Lil Buddies
EditorsDec 19, 2025
2025 Jewelry Superlatives: A Yearbook-Style Year in Review

The National Jeweler editors revisit the most noteworthy industry happenings and design trends from 2025.

Front of Jean Schlumberger’s ‘African Cat’ brooch
AuctionsDec 19, 2025
Jean Schlumberger’s ‘African Cat’ Is Purr-Fection

Need a gift for the cat lover who has everything? Look no further than our latest Piece of the Week.

Audemars Piguet Grosse Pièce
AuctionsDec 18, 2025
Audemars Piguet Reclaims Historic Pocket Watch at Auction

It purchased the “Grosse Pièce,” an ultra-complicated Audemars Piguet pocket watch from the ‘20s, for a record-breaking price at Sotheby’s.

Diamond ring in parts
Lab-GrownDec 18, 2025
Kira Jewels Debuts Custom Lab-Grown Diamond Jewelry Service

The lab-grown diamond grower now offers custom engagement and fashion jewelry through its Kira Custom Lab Jewelry service.

Terry and Cindy Chandler at AGS Conclave
EditorsDec 18, 2025
Terry Chandler Looks Back on 40 Years of Opportunity, Change, and Friends

Chandler got his start at Michelson Jewelers and has served as DCA president and CEO since 2001. He will retire at the end of the month.

Rendering of Bob’s Watches JFK airport store
WatchesDec 18, 2025
Bob’s Watches to Open Store in New York’s JFK Airport

The boutique is slated to open this week inside Terminal 8, offering pre-owned Rolex watches and more to international travelers.

JamAlert 1872x1052.png
Supplier BulletinDec 18, 2025
Cell Jammers Are Targeting Your Business. Here's How to Beat Them

Sponsored by Digital Monitoring Products

Fabergé egg pendant near gloved hand
CrimeDec 17, 2025
Man Pleads Not Guilty to Swallowing Fabergé Pendant

The special-edition egg pendant ingested in a New Zealand jewelry store was recovered after a six-day wait.

Ashley Zhang Jewelry Snake Necklace, Renato Cipullo Hematite Blaze Necklace, Vanessa Fernandez Studio Curva Wrap Hoops, Hernsdorf Tears of Aphrodite Necklace, Robinson Pelham Tsar Star Earrings, Marla Aaron Nymphenburg Lock, Lof The Valentine Ring
EditorsDec 17, 2025
2025 Jewelry Rewind: The Best Piece of the Week Picks

Associate Editor Natalie Francisco plays favorites with Piece of the Week, selecting a standout piece of jewelry from each month of 2025.

Lucy Hale in Jacquie Aiche’s Love and Desire Campaign
CollectionsDec 17, 2025
Lucy Hale Stars in Jacquie Aiche’s Holiday Campaign

The “Love and Desire” campaign is inspired by the magic that follows when one’s heart leads the way, said the brand.

SSEF logo
GradingDec 17, 2025
SSEF Announces 2025 Scholarship Winners

Two awardees will receive free tuition for an educational course at the Swiss lab, with flights and lodging included.

Pandora Alexander Lacik and Berta de Pablos-Barbier
MajorsDec 16, 2025
Pandora’s New CEO Will Step Up Early

Berta de Pablos-Barbier will replace Alexander Lacik at the start of January, two months earlier than expected.

JAR pendant brooch, fancy intense blue diamond
AuctionsDec 16, 2025
Suzanne Belperron, JAR Shine in Sotheby’s First Auctions at New HQ

Sotheby’s held its first two jewelry sales at the Breuer building last week, and they totaled nearly $44 million.

National Jeweler columnists and PR professionals Duvall O’Steen and Jen Cullen Williams
ColumnistsDec 16, 2025
Beyond Unboxing: Creative Reveals to Drive Reach and Engagement

Here are six ideas for making more engaging content for Instagram Reels and TikTok, courtesy of Duvall O’Steen and Jen Cullen Williams.

Tiffany & Co. logo, Anna Martin, CD Peacock logo
Events & AwardsDec 16, 2025
Diamonds Do Good Names 2026 Award Recipients

The honorees include a notable jewelry brand, an industry veteran, and an independent retailer.

Stock image of gavel
CrimeDec 15, 2025
Men Receive Life Sentences in Home Invasion Murder of Jeweler

Carlos Jose Hernandez and Joshua Zuazo were sentenced to life without the possibility of parole in the 2024 murder of Hussein “Sam” Murray.

Eduard Stefanescu, left, and Sara Yood, right
Policies & IssuesDec 15, 2025
Sara Yood Named Co-Chair of RJC Standards Committee

Yood will serve alongside Eduard Stefanescu, the sustainability manager for C.Hafner, a precious metals refiner in Germany.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy