ACTUAL QUESTIONS AND CORRECT
ANSWERS
Explain how audit trails are used in the EHR environment - CORRECT
ANSWER Audit trails track every single access to data in the computer system. It logs
the name of the individual who accessed the data, the date and time, and the action taken (
EX: modifying or deleting data). Audit Trails are examined by system administrators who use
special analysis data to identify suspicious or abnormal system behavior.
Develop policies and procedures related to privacy - CORRECT ANSWER Must
implement reasonable and appropriate policies and procedures to comply with THE HIPAA
security standards, implementation specifications, and other requirements
Describe the control access to protected health information - CORRECT
ANSWER Being able to identify which employees should have access to what data
Identify the need and process of risk analysis - CORRECT ANSWER The security rule
requires an organization to implement security measures that are sufficient to reduce risk;
Risk management begins with a risk assessment( identifying security threats,risks, and
vulnerabilities, determining how likely it is that any given threat can occur. ( Incident
detection methods/Incident Response Plans and Procedures)
Develop password management plan - CORRECT ANSWER Mandatory change of
passwords at specified intervals
Identify common threats encountered when using HIT - CORRECT
ANSWER Unauthorized access/disclosure, Theft, Improper disposal, loss (laptop,
media lost), Hacking/Intrusion.
Access control - CORRECT ANSWER Control measure that monitors and limits that
access to documents to those that have a legitimate need to view or make changes to said
documents.