Questions and Answers| Latest Update
A dietitian witnessed unprofessional behavior in violation of hospital policies and procedures.
Which option indicates which action the dietitian should take to report the behavior? ✔️✔️File a
report with the hospital, the Joint Commission, or the state licensing board for the profession
involved
Which example indicates how security differs from privacy as it relates to the Health Insurance
Portability and Accountability Act (HIPAA)? ✔️✔️Security protects electronic protected health
records (ePHI), whereas privacy protects all protected health information (PHI).
Which situation requires patient authorization? ✔️✔️When a provider requests old or unrelated
medical records
An organization wants to ensure that Health Insurance Portability and Accountability Act
(HIPAA) compliance is successful. Which condition is optimal for ensuring HIPAA compliance?
✔️✔️Creating an annual training plan that all employees are required to complete
Which statement aligns with the Minimum Necessary Rule as it applies to the Health Insurance
Portability and Accountability Act (HIPAA)? ✔️✔️Covered entities under HIPAA limit the
information disclosed and only provide what is needed for the intended purpose.
Which scenario describes electronic protected health information (ePHI)? ✔️✔️Emailed results of
a blood test report
Which item is protected under the Health Insurance Portability and Accountability Act (HIPAA)
Security Rule? ✔️✔️Digital photographs or imaging of a patient
, Which example demonstrates when authorization is not required for releasing protected health
information (PHI) under HIPAA? ✔️✔️The PHI is for a referral to a medical clinic.
A covered entity is implementing new data protocols with their new electronic medical records
(EMR) systems. The technology expert is instructed to ensure both privacy and security
standard compliance and to educate employees on the differences between privacy and
security.
Which example indicates what the technology expert should advise the employees about
privacy and security? ✔️✔️Privacy protects protected health information (PHI), and security
protects electronic protected health information (ePHI)
A compliance officer is providing an educational lecture to the staff of a large public hospital.
The educational material covers the Health Insurance Portability and Accountability Act (HIPAA)
and potential violations. The compliance officer asks the class about the types of penalties that
organizations and individuals receive for noncompliance.
Which response from a staff member indicates the types of penalties that organizations and
individuals receive for HIPAA noncompliance? ✔️✔️Civil and criminal
A private hospital has been reported for improper disposal of unused patient specimens.
Which of these would occur first in response to the hospital's Health Insurance Portability and
Accountability Act (HIPAA) violation? ✔️✔️Be inspected by the Office of Civil Rights (OCR)
A clinic has several patients waiting to see their respective doctors. When confirming patients
for their appointments, the receptionist uses certain protected health information (PHI).
Which protected health information could be used to identify patients for their respective
doctors without violating HIPAA regulations? ✔️✔️Names, such as the patient's or doctor's name
An administrator at a community clinic discovers a breach of protected health information (PHI)
for three hundred patients.