LCHI 474 FINAL EXAM QUESTIONS AND
ANSWERS GRADED A+ 2026
Which of the following is a right of an individual to be left alone? - ANS Privacy
data integrity controls reduce the risk of data ...? - ANS Reduces data alteration
When protected health information is shared between two nurses in a hospital, the HIPPA
Privacy Rule considers sharing to be - ANS Use
Breaches of protected health information by business associates - ANS Has to be reported to
HHS
If data are de-identified according to the requirements of the HIPPAPrivacy rule, - ANS Breech
reporting is not required for wrongful disclosure
When health data from a provider are integrated with health data compiled by a patient in a
personal health record, the integrity of the data can be assured through - ANS Data
provenance
Which of the following represents one of the most common complaints levied with the office of
civil rights? - ANS Right of access violation
A security threat - ANS Can exploit vulnerability causing a breech
@COPYRIGHT 2026/2027 ALLRIGHTS RESERVED 1
, What is the situation in which a user or system denies having performed some action on data? -
ANS Repudiation
HIPPA refers to data backup, disaster recovery, and emergency mode operations as -
ANS Contingency planning
Which form of authentication is the strongest? - ANS Biometrics and passwords
What mechanism enables use of a digital signature? - ANS Public key infrastructure
Access controls should be established to conform to - ANS Minimum necessary requirements
Which statement about encryption is true? - ANS Poorly implemented is worse than no
encryption at all
Which of the following is a purpose of mobile device managemnt? - ANS Establish policies
about use of personal devices
Breaches of health information from personal health records are - ANS Covered by
regulations from federal trade commission
Notifications of large breaches is required within - ANS 60 days
Which of the following is false about identity theft? - ANS Easiest crime against protected
health information to identify
Which of the following has been found to be the most common HIPPA security rule that is
lacking in a provider setting? - ANS Incomplete/ nonupdated risk analysis and non-existent
policies and procedures
@COPYRIGHT 2026/2027 ALLRIGHTS RESERVED 2
ANSWERS GRADED A+ 2026
Which of the following is a right of an individual to be left alone? - ANS Privacy
data integrity controls reduce the risk of data ...? - ANS Reduces data alteration
When protected health information is shared between two nurses in a hospital, the HIPPA
Privacy Rule considers sharing to be - ANS Use
Breaches of protected health information by business associates - ANS Has to be reported to
HHS
If data are de-identified according to the requirements of the HIPPAPrivacy rule, - ANS Breech
reporting is not required for wrongful disclosure
When health data from a provider are integrated with health data compiled by a patient in a
personal health record, the integrity of the data can be assured through - ANS Data
provenance
Which of the following represents one of the most common complaints levied with the office of
civil rights? - ANS Right of access violation
A security threat - ANS Can exploit vulnerability causing a breech
@COPYRIGHT 2026/2027 ALLRIGHTS RESERVED 1
, What is the situation in which a user or system denies having performed some action on data? -
ANS Repudiation
HIPPA refers to data backup, disaster recovery, and emergency mode operations as -
ANS Contingency planning
Which form of authentication is the strongest? - ANS Biometrics and passwords
What mechanism enables use of a digital signature? - ANS Public key infrastructure
Access controls should be established to conform to - ANS Minimum necessary requirements
Which statement about encryption is true? - ANS Poorly implemented is worse than no
encryption at all
Which of the following is a purpose of mobile device managemnt? - ANS Establish policies
about use of personal devices
Breaches of health information from personal health records are - ANS Covered by
regulations from federal trade commission
Notifications of large breaches is required within - ANS 60 days
Which of the following is false about identity theft? - ANS Easiest crime against protected
health information to identify
Which of the following has been found to be the most common HIPPA security rule that is
lacking in a provider setting? - ANS Incomplete/ nonupdated risk analysis and non-existent
policies and procedures
@COPYRIGHT 2026/2027 ALLRIGHTS RESERVED 2