As cyber attacks are on the rise, it is important that all Merck employees ensure that they are using good password habits and multi-step verifications to protect the company data, recommends Michael Corgiat, a representative of The Retirement Group, a division of Wealth Enhancement Group.
It is therefore important that Merck employees take conscious measures to prevent their personal and company data from being compromised by ransomware attacks by being aware of phishing scams and ensuring that their systems are up to date, stresses Brent Wolf, a representative of The Retirement Group, a division of Wealth Enhancement Group.
Here are three brief main topics for your article:
-
The Colonial Pipeline attack and other recent ransomware attacks on critical infrastructure.
-
How ransomware works, and the rising risk to people and businesses.
-
Some practical ways to secure electronic information, with a focus on good passwords and other safety tips.
Have you noticed that gas prices in your area are through the roof? Colonial Pipeline, which carries almost 50% of East Coast crude oil from Texas to New Jersey halted operations on May 7, 2021, after a ransomware attack. The pipeline was restarted in one week after Colonial paid the $4.4 million ransom, after the group behind the attack notified the company of the breach.
Although there was enough gas in storage to stabilize demand, panic buying led to shortages on the East Coast of the United States and pushed the national average gas price above $3.00 per gallon for the first time since 2014 although there was enough gas to meet demand.[1]. Ransomware has been around for some time, but the Colonial Pipeline attack highlighted the risk to critical infrastructure and triggered a strong federal response. Interestingly enough, the DOJ was able to recover most of the ransom, and DarkSide, the group behind the attack, announced that it would be halting its operations.[2.]
More Articles Like This One:
The Department of Homeland Security has issued new rules that require critical pipeline owners and operators to report cybersecurity incidents within 12 hours and review their cybersecurity posture and submit the results within 30 days.[3] As we have seen the incident has underscored the need for government efforts to improve the nation’s cybersecurity and to form an international partnership to hold nations that shelter cybercriminals accountable.[4.]
Malicious Code:
As a Merck company, it is important that you understand the basics of cyber attacks in order to protect your assets from threats. Ransomware is a type of malicious code (malware) that compromises the victim’s computer system and the attacker uses the compromised system to encrypt files for which a ransom is demanded in exchange for the decryption key. Some of the attackers may also threaten to leak the company’s data. Globally, an estimated 305 million ransomware attacks were recorded in the year 2020 as compared to a 62% increase from the previous year, 2019. More than 200 million were reported in the United States.[5] Cybercriminal gangs have shifted their attention from targeting ‘data-intensive’ organizations such as retailers, insurers, and financial services to targeting businesses and other entities that are critical to the public health. JBS USA Holdings, a company that handles one-fifth of the U.S. livestock production, paid $11 million ransom, one week after the Colonial Pipeline attack.[6] As a result of relatively low spending on cybersecurity, healthcare systems are also a prime target, putting patient care at risk.[7] State and local governments, schools, and private companies of all sizes are also frequently attacked.[8]
As cyber attackers have chosen Merck employees as their target audience, it is crucial to enhance cybersecurity at your workplace and residential networks to avoid risks. Typically, ransomware groups, which are mainly from Russia and other countries in the Eastern region, set their ransoms based on the level of the victim company’s funds. Large operations may end in negotiation between the middle men and the victims or the cyber insurance companies. Although the FBI doesn’t recommend paying the ransom, key organizations and entities might not be able to afford to rebuild their IT systems and the cost of doing so may well be higher than the ransom demanded.[9]
Protecting Your Data:
Do you know that ransomware attacks are increasingly targeting seniors? According to the FBI, older people are especially vulnerable to ransomware scams because they are not very familiar with the cyber security measures and tend to open any email or make any call from an unknown number. Scammers especially target retirees, taking advantage of their fear of losing important information or their access to certain accounts. It is crucial for people in their 60s, including those working for Merck or retiring, to know the dangers and how to protect their electronic information. Major ransomware groups tend to target more profitable targets, but many cybercriminals attack individual consumers and demand ransom to lock their data, access their financial accounts, and sell their personal data.
If you work for Merck and you think that you or your company is at risk of being targeted by ransomware, the following will assist you in protecting your data.[10] Use good passwords and keep them safe. The Colonial Pipeline attack occurred through a leaked password of an old account that had remote server access,[11] which is why, as an employee of Merck and a potential target, your first line of defence is a good password. Use between 8 and 12 characters, including a mix of case, numbers, and special characters. Passwords that are longer and more complex are better than those that are short and simple. Avoid using personal information and words that can be found in the dictionary.
One way to do this is to use a password that can be transformed and remembered. For instance, Jack and Jill going up the hill to get a pail of water can be written as J&jwuth!!2faPow. It is more advisable to have different passwords for different accounts than to reuse a good password. You should use a password manager that generates random passwords that can be remembered using a strong master password. Do not share or write down your passwords. No simple solutions. When creating security questions that can be used to recover a password, be careful. Given that there is a lot of actual information that can be found online, it might be beneficial for employees of Merck to use fictitious answers that they can remember. If a criminal can guess your answer from the information that he or she got from the internet (for example, from your online profile), then he or she will be able to change your password and gain access to your account. Take two measures. Even if a thief gets your password, two-factor authentication, which is usually a text or email code sent to your phone, provides an extra protection.
Consider before clicking. As an employee of Merck using work systems, it is necessary to know that the most common way of transmitting ransomware and other malicious code to the affected computer is through a ‘phishing’ email that would require the recipient to open a link. There is no need to click on a link in an email or text message unless you know who sent it and where it is leading to. Install anti-virus software. Get and keep anti-virus software, a firewall, and an email filter. Old antivirus software does not provide protection against the latest infections. Backup your data. Back up to an external hard drive at regular intervals. The drive should be disconnected from the network during the intervals to enhance security. Maintain system updates. Use the latest operating system that is compatible with your computer and install security updates.
Most of the ransomware attacks are based on operating system and application vulnerabilities. If you get a message on your personal or company computer that you are infected with a virus or that your data is being demanded as a ransom, it is more likely a fake pop-up than an actual attack. These pop-ups are usually followed by a phone number for so-called technical support or to make a payment. As an employee of Merck, it is crucial that you do not make a call and do not click on the window and any links to avoid compromising the system. Try to close your browser and shut down your computer. More information and other tips can be found at the Cybersecurity & Infrastructure Security Agency website at us-cert.cisa.gov/ncas/tips.
Conclusion:
Articles you may find interesting:
- Corporate Employees: 8 Factors When Choosing a Mutual Fund
- Use of Escrow Accounts: Divorce
- Medicare Open Enrollment for Corporate Employees: Cost Changes in 2024!
- Stages of Retirement for Corporate Employees
- 7 Things to Consider Before Leaving Your Company
- How Are Workers Impacted by Inflation & Rising Interest Rates?
- Lump-Sum vs Annuity and Rising Interest Rates
- Internal Revenue Code Section 409A (Governing Nonqualified Deferred Compensation Plans)
- Corporate Employees: Do NOT Believe These 6 Retirement Myths!
- 401K, Social Security, Pension – How to Maximize Your Options
- Have You Looked at Your 401(k) Plan Recently?
- 11 Questions You Should Ask Yourself When Planning for Retirement
- Worst Month of Layoffs In Over a Year!
- Corporate Employees: 8 Factors When Choosing a Mutual Fund
- Use of Escrow Accounts: Divorce
- Medicare Open Enrollment for Corporate Employees: Cost Changes in 2024!
- Stages of Retirement for Corporate Employees
- 7 Things to Consider Before Leaving Your Company
- How Are Workers Impacted by Inflation & Rising Interest Rates?
- Lump-Sum vs Annuity and Rising Interest Rates
- Internal Revenue Code Section 409A (Governing Nonqualified Deferred Compensation Plans)
- Corporate Employees: Do NOT Believe These 6 Retirement Myths!
- 401K, Social Security, Pension – How to Maximize Your Options
- Have You Looked at Your 401(k) Plan Recently?
- 11 Questions You Should Ask Yourself When Planning for Retirement
- Worst Month of Layoffs In Over a Year!
Think of your digital information as a valuable property, like a family heirloom. This is why it is crucial to protect your data from ransomware as you do with your valuable items. Ransomware can be regarded as a clever burglar who steals your digital family heirloom and demands a ransom for it. By using strong passwords, having anti-virus software and being careful of phishing, you are in a way locking the digital safe. Another way of protecting your data is to make sure that you are backing up your data. This is because just as you would keep a copy of your heirloom in a different place, you do not want to leave your precious assets unattended. Hence, it is crucial to be proactive in protecting your digital assets so that you do not lose control over them.
Sources:
1. Morgan Stanley. Cybersecurity for Seniors: A Guide for Loved Ones . 2021. morganstanley.com .
2. National Council on Aging. Improving Personal Cybersecurity: 5 Tips for Seniors . 2021. ncoa.org .
3. Texas Department of Information Resources. Cybersecurity Tips for Retirees and Retirement-age Individuals . 2024. dir.texas.gov .
4. Wyoming Enterprise Technology Services. Seniors Online Safety Tips . 2021. ets.wyo.gov .
5. Florida Senior Consulting. Cybersecurity Guide for Seniors: A 2025 Update . 2025. floridaseniorconsulting.com .
How does Merck's new retirement benefits program support long-term financial security for employees, particularly regarding the changes to the pension and savings plans introduced in 2013? Can you elaborate on how Merck's commitment to these plans is designed to help employees plan for retirement effectively?
Merck's New Retirement Benefits Program: Starting in 2013, Merck introduced a comprehensive retirement benefits program aimed at providing all eligible employees, irrespective of their legacy company, uniform benefits. This initiative supports Merck's commitment to financial security by integrating pension plans, savings plans, and retiree medical coverage. This approach not only aims to help employees plan effectively for retirement but also aligns with Merck’s post-merger goal of standardizing benefits across the board.
What are the key differences between the legacy pension benefits offered by Merck before 2013 and the new cash balance formula implemented in the current retirement program? In what ways do these changes reflect Merck's broader goal of harmonizing benefits across various employee groups?
Differences in Pension Formulas: Before 2013, Merck calculated pensions using a final average pay formula which typically favored longer-term, older employees. The new scheme introduced a cash balance formula, reflecting a shift towards a more uniform accumulation of retirement benefits throughout an employee's career. This change was part of Merck's broader strategy to harmonize benefits across various employee groups, making it easier for employees to understand and track their pension growth.
In terms of eligibility, how have Merck's pension and savings plans adjusted for years of service and age of retirement since the introduction of the new program? Can you explain how these adjustments might affect employees nearing retirement age compared to newer employees at Merck?
Adjustments in Eligibility: The new retirement program revised eligibility criteria for pension and savings plans to accommodate a wider range of employees. Notably, the pension benefits under the new program are designed to be at least equal to the prior benefits for services rendered until the end of 2019, provided employees contribute a minimum of 6% to the savings plan. This adjustment aids both long-term employees and those newer to the company by offering equitable benefits.
Can you describe the transition provisions that apply to legacy Merck employees hired before January 1, 2013? How does Merck plan to ensure that these provisions protect employees from potential reductions in retirement benefits during the transition period?
Transition Provisions for Legacy Employees: For employees who were part of legacy Merck plans before January 1, 2013, Merck established transition provisions that allow them to earn retirement income benefits at least equal to their current pension and savings plan benefits through December 31, 2019. This ensures that these employees do not suffer a reduction in benefits during the transition period, offering a sense of security as they adapt to the new program.
How does employee contribution to the retirement savings plan affect the overall retirement benefits that Merck provides? Can you discuss the implications of Merck's matching contributions for employees who maximize their savings under the new retirement benefits structure?
Impact of Employee Contribution to Retirement Savings: In the new program, Merck encourages personal contributions to the retirement savings plan by matching up to 6% of employee contributions. This mutual contribution strategy enhances the overall retirement benefits, incentivizing employees to maximize their savings for a more robust financial future post-retirement.
What role does Merck's Financial Planning Benefit, offered through Ernst & Young, play in assisting employees with their retirement planning? Can you highlight how engaging with this benefit changes the financial landscapes for employees approaching retirement?
Role of Merck’s Financial Planning Benefit: Offered through Ernst & Young, this benefit plays a critical role in assisting Merck employees with retirement planning. It provides personalized financial planning services, helping employees understand and optimize their benefits under the new retirement framework. Engaging with this service can significantly alter an employee’s financial landscape by providing expert guidance tailored to individual retirement goals.
How should employees evaluate their options for retiree medical coverage under the new program compared to previous offerings? What considerations should be taken into account regarding the potential costs and benefits of the retiree medical plan provided by Merck?
Options for Retiree Medical Coverage: With the new program, employees must evaluate both subsidized and unsubsidized retiree medical coverage options based on their age, service length, and retirement needs. The program offers different levels of company support depending on these factors, making it crucial for employees to understand the potential costs and benefits to choose the best option for their circumstances.
In what ways does the introduction of voluntary, unsubsidized dental coverage through MetLife modify the previous dental benefits structure for Merck retirees? Can you detail how these changes promote cost efficiency while still providing valuable options for employees?
Introduction of Voluntary Dental Coverage: Starting January 2013, Merck shifted from sponsored to voluntary, unsubsidized dental coverage through MetLife for retirees. This change aligns with Merck’s strategy to promote cost efficiency while still providing valuable dental care options, allowing retirees to choose plans that best meet their needs without company subsidy.
How can employees actively engage with Merck's resources to maximize their retirement benefits? What specific tools or platforms are recommended for employees to track their savings and retirement progress effectively within the new benefits framework?
Engaging with Merck’s Retirement Resources: Merck provides various tools and platforms for employees to effectively manage and track their retirement savings and benefits. Employees are encouraged to utilize resources like the Merck Financial Planning Benefit and online benefit portals to make informed decisions and maximize their retirement outcomes.
For employees seeking additional information about the retirement benefits program, what are the best ways to contact Merck? Can you provide details on whom to reach out to, including any relevant phone numbers or online resources offered by Merck for inquiries related to the retirement plans?
Contacting Merck for Retirement Plan Information: Employees seeking more information about their retirement benefits can contact Merck through dedicated phone lines provided in the benefits documentation or by accessing detailed plan information online through Merck's official benefits portal. This ensures employees have ready access to assistance and comprehensive details regarding their retirement planning options.