ACTUAL EXAM PAPER 2026 QUESTIONS
WITH SOLUTIONS GRADED A+
◉ Which of the following are breach prevention best practices?
Answer: All of the above
◉ A breach as defined by the DoD is broader than a HIPAA breach
(or breach defined by HHS).
Answer: True
◉ A Privacy Impact Assessment (PIA) is an analysis of how
information is handled:
Answer: All of the above
◉ Under the Privacy Act, individuals have the right to request
amendments of their records contained in a system of records.
Answer: True
◉ Which of the following are examples of personally identifiable
information (PII)?
, Answer: All of the above
◉ Which of the following statements about the Privacy Act are true?
Answer: All of the above
◉ A covered entity (CE) must have an established complaint
process.
Answer: True
◉ If an individual believes that a DoD covered entity (CE) is not
complying with HIPAA, he or she may file a complaint with the:
Answer: All of the above
◉ What of the following are categories for punishing violations of
federal health care laws?
Answer: All of the above
◉ Which HHS Office is charged with protecting an individual
patient's health information privacy and security through the
enforcement of HIPAA?
Answer: Office for Civil Rights (OCR)
◉ Technical safeguards are: