(Answered) Hipaa & privacy exam 1.5hrs.
In which of the following circumstances must an individual be given the opportunity to agree or
object to the use and disclosure of their PHI?
A. Before their information is included in a facility directory
B. Prior to disclosure to a business associate
C. Before PHI directly relevant to a person’s involvement with the individual’s care or payment of
health care is shared with that person
D. Both A and C (correct)
Which of the following statements about the HIPAA Security Rule are true?
A Established a national set of standards for the protection of PHI that is created, received, maintained,
or transmitted in electronic media by a HIPAA covered entity (CE) or business associate (BA)
B Protects electronic PHI (ePHI)
C Addresses three types of safeguards – administrative, technical and physical – that must be in place to
secure individuals’ ePHI
D All of the above (correct)
A covered entity (CE) must have an established complaint process
T/F
TRUE (correct)
The e-Government Act promotes the use of electronic government services by the public and
improves the use of information technology in the government.
T/F
TRUE (correct)
When must a breach be reported to the U.S. Computer Emergency Readiness Team?
A. Within 1 hour of discovery (correct)
B. Within 24 hours of discovery
C. Within 48 hours of discovery
This study source was downloaded by 100000832558064 from CourseHero.com on 05-20-2022 21:22:22 GMT -05:00
https://www.coursehero.com/file/50397346/Hipaa-privacy-exam-15hrsdocx/
, (Answered) Hipaa & privacy exam 1.5hrs.
D. Within 72 hours of discovery
This study source was downloaded by 100000832558064 from CourseHero.com on 05-20-2022 21:22:22 GMT -05:00
https://www.coursehero.com/file/50397346/Hipaa-privacy-exam-15hrsdocx/
In which of the following circumstances must an individual be given the opportunity to agree or
object to the use and disclosure of their PHI?
A. Before their information is included in a facility directory
B. Prior to disclosure to a business associate
C. Before PHI directly relevant to a person’s involvement with the individual’s care or payment of
health care is shared with that person
D. Both A and C (correct)
Which of the following statements about the HIPAA Security Rule are true?
A Established a national set of standards for the protection of PHI that is created, received, maintained,
or transmitted in electronic media by a HIPAA covered entity (CE) or business associate (BA)
B Protects electronic PHI (ePHI)
C Addresses three types of safeguards – administrative, technical and physical – that must be in place to
secure individuals’ ePHI
D All of the above (correct)
A covered entity (CE) must have an established complaint process
T/F
TRUE (correct)
The e-Government Act promotes the use of electronic government services by the public and
improves the use of information technology in the government.
T/F
TRUE (correct)
When must a breach be reported to the U.S. Computer Emergency Readiness Team?
A. Within 1 hour of discovery (correct)
B. Within 24 hours of discovery
C. Within 48 hours of discovery
This study source was downloaded by 100000832558064 from CourseHero.com on 05-20-2022 21:22:22 GMT -05:00
https://www.coursehero.com/file/50397346/Hipaa-privacy-exam-15hrsdocx/
, (Answered) Hipaa & privacy exam 1.5hrs.
D. Within 72 hours of discovery
This study source was downloaded by 100000832558064 from CourseHero.com on 05-20-2022 21:22:22 GMT -05:00
https://www.coursehero.com/file/50397346/Hipaa-privacy-exam-15hrsdocx/