Pages

HIPAA and Privacy Act Training Answers

Question: Which of the following statements is NOT true about HIPAA violations?

a) Workers who violate HIPAA could go to jail
b) Workers who violate HIPAA could face a penalty by their licensing board
c) The penalty for HIPPA violations could be as high as $1.5 million
d) Workers who didn’t realize they were violating HIPAA rules cannot be fined

Show or Reveal the Answer

Workers who didn’t realize they were violating HIPAA rules cannot be fined

Question: It is a requirement under HIPAA that:
a) All patients receive a copy of a healthcare organization’s Notice of Privacy Practices
b) All patients receive a copy of their health record before discharge
c) All patients are informed to turn cell phones off to protect their identity
d) All patients have a secret code number to remain anonymous

Show or Reveal the Answer

All patients receive a copy of a healthcare organization’s Notice of Privacy Practices

Question: Healthcare workers who must comply with HIPAA privacy requirements are:
a) Doctors, nurses, and others providing direct patient care
b) Environmental Services staff
c) Engineering staff
d) All of the above

Show or Reveal the Answer

All of the above

Question: Under HIPAA, patients have the right to do all of the following EXCEPT:
a) Request their medical records
b) Inspect their medical records
c) Alter their medical records themselves
d) Know the identities of those who have accessed their medical records

Show or Reveal the Answer

Alter their medical records themselves

Question: You may disclose a patient’s Protected Health Information (PHI) without the patient’s consent for all of the following reasons EXCEPT:
a) For medical treatment
b) At the request of a family member
c) For payment purposes
d) When required by law

Show or Reveal the Answer

At the request of a family member

Question: Which of the following could compromise a patient’s Protected Health Information (PHI)?
a) Two caregivers speaking privately one-on-one
b) Putting printed records that are no longer needed into the trash
c) Using a computer with an encrypted (protected) hard drive
d) Using a computer with a secured network

Show or Reveal the Answer

Putting printed records that are no longer needed into the trash

Question: Which of the following statements about the Privacy Act are true?
A. Balances the privacy rights of individuals with the Government's need to collect and maintain information
B. Regulates how federal agencies solicit and collect personally identifiable information (PII)
C. Sets forth requirements for the maintenance, use, and disclosure of PII
D. All of the above

Show or Reveal the Answer

All of the above

Question: The minimum necessary standard:
A. Limits uses, disclosures, and requests for PHI to the minimum necessary amount of PHI needed to carry out the intended purposes of the use or disclosure
B. Does not apply to exchanges between providers reacting a patient
C. Does not apply to use or disclosures made to the individual or pursuant to the individual's auhtorization
D. All of the above

Show or Reveal the Answer

All of the above

Question: Which of the following statements about the HIPAA Security Rule are true?
A. Established a national set of standards for the protection of PHI that is created, received, maintained, or transmitted in electronic media by a HIPAA covered entity (CE) or business associate (BA)
B. Protects electronic PHI (ePHI)
C. Addresses three types of safeguards - administrative, technical, and physical- that must be in place to secure individuals' ePHI
D. All of the above

Show or Reveal the Answer

All of the above

Question: In which of the following circumstances must an individual be given the opportunity to agree or object to the use and disclosure of their PHI?
A. Before their information is included in a facility directory
B. Before PHI directly relevant to a person's involvement with the individual's care or payment of healthcare is shared with that person
C. Only A
D. Both A and C

Show or Reveal the Answer

Both A and C

Question: The Privacy Rule applies to all of the following except
A. HMOs
B. hospitals
C. employers
D. physicians
E. dentists

Show or Reveal the Answer

??? https://www.freestatesocialwork.com/?p=529

Under HIPAA, a covered entity (CE) is defined as:
All of the above

Which of the following are breach prevention best practices?
All of this above

True or False? "Use" is defined under HIPAA as the release of information containing PHI outside of the covered entity (CE).
FALSE

HIPAA allows the use and disclosure of PHI for treatment, payment, and health care operations, (TPO) without the patient's consent or authorization.
TRUE

The HIPAA Security Rule applies to which of the following:
PHI transmitted electronically

Administrative safeguards are:
Administrative actions, and policies and procedures that are used to manage the selection, development, implementation and maintenance of security measures to protect electronic PHI (ePHI). These safeguards also outline how to manage the conduct of the workforce in relation to the protection of ePHI

Physical safeguards are:
Physical measures, including policies and procedures that are used to protect electronic information systems and related buildings and equipment, from natural and environmental hazards, and unauthorized intrusion

Technical safeguards are:
Information technology and the associated policies and procedures that are used to protect and control access to ePHI

Which HHS Office is charged with protecting an individual patient's health information privacy and security through the enforcement of HIPAA?
Office for Civil Rights (OCR)

What of the following are categories for punishing violations of federal health care laws?
All of the above

If an individual believes that a DoD covered entity (CE) is not complying with HIPAA, he or she may file a compliant with the:
All of the above

A covered entity (CE) mist have an established complaint process
TRUE

Which of the following statements about the Privacy Act are True?
All of the above

Which of the following are examples of personally identifiable information (PII)?
All of the above

Under the Privacy Act, individuals have the right to request amendments of their records contained in a system of records.
TRUE

The e-Government Act promotes the use of electronic government services by the public and improves the use of information technology in the government.
TRUE

A breach as defined by the DoD is broader than a HIPAA breach (or breach defined by HHS).
TRUE

When must a breach be reported to the U.S. Computer Emergency Readiness Team?
Within 1 hour of discovery

Which of the following are common causes of breaches?
all of the above

Which of the following is NOT electronic PHI (ePHI)
health information stored on paper in a file cabinet

Which of the following would be considered PHI?
An individual's first and last name and the medical diagnosis in a physician's progress report

A Privacy Impact Assessment (PIA) is an analysis of how information is handled:
All of the above

An incidental use or disclosure is not a violation of the HIPAA Privacy Rule if the covered entity (CE) has:
All of the above

A covered entity (CE) must have an established complaint process.
TRUE

HIPAA provides individuals with the right to request an accounting of disclosures of their PHI.
TRUE

The minimum necessary standard:
All of the above

Which of the following are fundamental objectives of information security?
All of the above

Which of the following are true statements about limited data sets?
All of the above

The HIPAA Privacy Rule applies to which of the following?
All of the above

A Systems of Records Notice (SORN) serves as a notice to the public about a system of records and must:
All of the above

Select all that apply: The HIPAA Privacy Rule permits use or disclosure of a patient's PHI in accordance with an individual's authorization that:
Is written and signed by the patient
Includes core elements and required statements set forth in the HIPAA Privacy Rule and DoD's implementing issuance

HIPAA or FERPA - The Family Educational Rights and Privacy Act, Confidentially Records Answers
which of the following patient rights is not conferred by hipaa?
which of the following is true with changes to the hipaa act
the hipaa mandated standard for electronic transmissions
it is a requirement under hipaa that
which of the following is not a covered entity under hipaa quizlet
which of the following is not a purpose of hipaa quizlet
when you violate privacy information regarding a patient the following could happen quizlet
which of the following is true with respect to hipaa? irb
the hipaa minimum necessary standard applies quizlet
in which of the following circumstances does the patient have an opportunity to agree or object

No comments:

Post a Comment