The article presents the discussion on relationship between employee behavior and information security in organizations. Topics include social engineering and awareness among employees of the dangers of using social media being fundamental in altering organizational behavior towards information security; and experiment conducted at a higher education institution and a detailing information security training process.