DHA-US001 HIPAA Challenge Exam
In which of the following circumstances must an individual be given the opportunity to
agree or object to the use and disclosure of their PHI? - ANS-Both A and C
-Before their information is included in a facility directory
-Before PHI directly relevant to a person's involvement with the individual's care or
payment of healthcare is shared with that person
Which of the following statements about the HIPAA Security Rule are true? - ANS-All of
the above
-Established a national set of standards for the protection of PHI that is created,
received, maintained, or transmitted in electronic media by a HIPAA covered entity (CE)
or business associate (BA)
-Protects electronic PHI (ePHI)
-Addresses three types of safeguards - administrative, technical, and physical- that
must be in place to secure individuals' ePHI
A covered entity (CE) must have an established complaint process. - ANS-True
The e-Government Act provides the use of electronic government services by the public
and improves the use of information technology in the government. - ANS-True
When must a breach be reported to the U.S. Computer Emergency Readiness Team? -
ANS-Within 1 hour of discovery
Which of the following statements about the Privacy Act are true? - ANS-All of the
above
-Balances the privacy rights of individuals with the Government's need to collect and
maintain information
-Regulates how federal agencies solicit and collect personally identifiable information
(PII)
-Sets forth requirements for the maintenance, use, and disclosure of PII
What of the following are categories for punishing violations of federal health care laws?
- ANS-All of the above
In which of the following circumstances must an individual be given the opportunity to
agree or object to the use and disclosure of their PHI? - ANS-Both A and C
-Before their information is included in a facility directory
-Before PHI directly relevant to a person's involvement with the individual's care or
payment of healthcare is shared with that person
Which of the following statements about the HIPAA Security Rule are true? - ANS-All of
the above
-Established a national set of standards for the protection of PHI that is created,
received, maintained, or transmitted in electronic media by a HIPAA covered entity (CE)
or business associate (BA)
-Protects electronic PHI (ePHI)
-Addresses three types of safeguards - administrative, technical, and physical- that
must be in place to secure individuals' ePHI
A covered entity (CE) must have an established complaint process. - ANS-True
The e-Government Act provides the use of electronic government services by the public
and improves the use of information technology in the government. - ANS-True
When must a breach be reported to the U.S. Computer Emergency Readiness Team? -
ANS-Within 1 hour of discovery
Which of the following statements about the Privacy Act are true? - ANS-All of the
above
-Balances the privacy rights of individuals with the Government's need to collect and
maintain information
-Regulates how federal agencies solicit and collect personally identifiable information
(PII)
-Sets forth requirements for the maintenance, use, and disclosure of PII
What of the following are categories for punishing violations of federal health care laws?
- ANS-All of the above