HIPAA Quiz

18 Questions | Attempts: 2739
Share

SettingsSettingsSettings
HIPAA Quiz - Quiz


Questions and Answers
  • 1. 

    Who is covered under HIPAA?

    • A.

      Clearinghouses

    • B.

      Healthcare providers that transmit standard transactions electronically

    • C.

      Health plans

    • D.

      All of the above

    Correct Answer
    D. All of the above
  • 2. 

    What can happen to a person who knowingly violates patient privacy for personal gain or malicious harm?

    • A.

      Disciplinary action

    • B.

      Loss of access privileges

    • C.

      Fines and penalties

    • D.

      Imprisonment

    • E.

      All of the above

    Correct Answer
    E. All of the above
  • 3. 

    Protected health information that should be kept confidential includes a patient's:

    • A.

      Diagnosis, procedures received, lab results

    • B.

      Name, address, and social security number

    • C.

      Medical information stored electronically (in Browser, Siemens, Meditech, etc.)

    • D.

      All of the above

    Correct Answer
    D. All of the above
    Explanation
    Protected health information is individually identifiable health information in any form (paper, electronic, oral) that is transmitted and/or stored by a covered entity or business associate.

    Rate this question:

  • 4. 

    As a healthcare worker, you may share PHI for:

    • A.

      Treatment

    • B.

      Payment

    • C.

      Healthcare operations

    • D.

      All of the above

    Correct Answer
    D. All of the above
    Explanation
    Reason: HIPAA does not restrict healthcare workers from sharing PHI for treatment, payment, or healthcare operations. This includes using or disclosing PHI to properly care for a patient, ensure proper billing, and aid in quality-improvement efforts.

    Rate this question:

  • 5. 

    You're an employee of the medical center's Environmental Services department. One day, when you're working in the Emergency Room, you see the ambulance bring in your neighbor, Bill. You hear someone say that Bill will be taken to the Operation Room. Bill's wife also works for the medical center in another department. True or False? You should call Bill's wife right away and tell her that he is in the Emergency Room.

    • A.

      True

    • B.

      False

    Correct Answer
    B. False
    Explanation
    False. Instead, tell the nursing staff that you know the patient and his wife. Let them know that you can help if they need to locate the patient's wife. Your neighbor has a right to privacy. If Bill is able to express his wishes, the ER staff will allow him to decide whom to notify that he is at the medical center.

    Rate this question:

  • 6. 

    Are members of the workforce who are not involved in a patient's care allowed to review the patient's chart out of curiosity?

    • A.

      Yes

    • B.

      No

    Correct Answer
    B. No
    Explanation
    Only workforce members who are involved in the patient's care are permitted to review the patient's chart without the patient's authorization. Reviewing the patient's chart merely out of curiosity would violate his/her privacy.

    Rate this question:

  • 7. 

    When storing sensitive information on laptops and mobile devices you should:

    • A.

      Only do it sparingly

    • B.

      Not do it at all

    • C.

      Use encryption if you must store or transmit sensitive information

    • D.

      B or C

    Correct Answer
    D. B or C
    Explanation
    Sensitive electronic information should only be stored on laptops or mobile devices if it is encrypted.

    Rate this question:

  • 8. 

    Physical security includes which of the following?

    • A.

      Locking doors and desks

    • B.

      Keeping PHI out of view of those around you

    • C.

      Storing computer equipment safely

    • D.

      All of the above

    Correct Answer
    D. All of the above
    Explanation
    Physical security involves common-sense steps to safeguard information from physical threats (e.g., theft). These steps include locking doors and desks, making sure that those around you cannot easily view PHI, and storing computer equipment safely and securely.

    Rate this question:

  • 9. 

    What does "minimum necessary" mean?

    • A.

      I am only expected to complete the minimum requirements of my job

    • B.

      A workforce member's access to PHI is limited to only what is needed to perform his/her responsibilities.

    • C.

      Requests for and disclosures of PHI are limited to what is needed to perform the task.

    • D.

      A medical center is no longer allowed to provide information about patients to the media under any circumstances.

    • E.

      B and C

    Correct Answer
    E. B and C
  • 10. 

    Over the past two years, you've collected many, many sheets of paper that contain patient names and other identifiable health information. You'd like to get rid of some of this paper. What should you do?

    • A.

      Use it as scratch paper.

    • B.

      Throw it in the trashcan.

    • C.

      Destroy it/ shred it

    Correct Answer
    C. Destroy it/ shred it
  • 11. 

    True or False? Under HIPAA, a patient has the following rights: a. To receive a Notice of Privacy Practices. b. To see or receive a copy of his/her protected health information (PHI) c. To request that his/her PHI be corrected. d. To ask for PHI to be sent to him/her at a different address or a different way. e. To request limits on how his/her PHI is used and disclosed. f. To receive a list of disclosures.

    • A.

      True

    • B.

      False

    Correct Answer
    A. True
  • 12. 

    The Notice of Privacy Practices:

    • A.

      Explains how the medical center will use or disclose patients' protected health information.

    • B.

      Is a list of private physicians who practice at the medical center.

    • C.

      Describes how the medical center will protect the privacy of employee records.

    Correct Answer
    A. Explains how the medical center will use or disclose patients' protected health information.
  • 13. 

    When discussing PHI in public places where your conversation can be overheard, try to:

    • A.

      Lower your voice.

    • B.

      Use non-generic terms.

    • C.

      Move to a more private area.

    • D.

      Both A and C

    Correct Answer
    D. Both A and C
  • 14. 

    Should I report a security or privacy violation?

    • A.

      No, that is a task for the police.

    • B.

      Yes, but only the really serious ones.

    • C.

      Yes, all workforce members have a responsibility to report suspected and actual violations. Ask the supervisor about the proper reporting procedures.

    Correct Answer
    C. Yes, all workforce members have a responsibility to report suspected and actual violations. Ask the supervisor about the proper reporting procedures.
  • 15. 

    Unauthorized access is:

    • A.

      Access/disclosures of information that an employee or physician does not have the job responsibility to access or share

    • B.

      Prohibited and against the HIPAA Privacy Rule

    • C.

      Looking at your neighbor's medical record when you are not involved in his/her care and do not have written authorization from him/her

    • D.

      All of the above

    Correct Answer
    D. All of the above
    Explanation
    Unauthorized access is accessing information for which you do not have a job responsibility to access or share.

    Rate this question:

  • 16. 

    Are Consents and Authorizations the same?

    • A.

      Yes. They can be used interchangeably.

    • B.

      No. Consents are used to get the patient's permission to use or disclose health information for treatment, payment or business operations. Authorizations are used to obtain permission to disclose PHI for activities outside the realm of treatment, payment or business operations.

    Correct Answer
    B. No. Consents are used to get the patient's permission to use or disclose health information for treatment, payment or business operations. Authorizations are used to obtain permission to disclose PHI for activities outside the realm of treatment, payment or business operations.
  • 17. 

    A patient may inspect or copy his or her entire medical record except for:

    • A.

      Psychotherapy notes

    • B.

      Notes or information compiled for use in a civil, criminal, or administrative proceeding

    • C.

      Information that a licensed provider determines will likely endanger the life or safety of the patient or another person

    • D.

      All of the above

    Correct Answer
    D. All of the above
    Explanation
    Reason: Patients have the right ot inspect and obtain copies of their medical records. HIPAA allows a few exceptions to this rule, including psychotherapy notes, information that may endanger patient or others, and information compiled for use in a civil, criminal, or administrative proceeding.

    Rate this question:

  • 18. 

    What are some things I can do to be more alert to Privacy and Security?

    • A.

      Keep it to yourself!

    • B.

      Activate screen saver with a password.

    • C.

      Improve your password strength and don't share it with anyone.

    • D.

      Make sure your Virus Scanner is enabled.

    • E.

      Do not install unauthorized software.

    • F.

      All of the above

    Correct Answer
    F. All of the above

Quiz Review Timeline +

Our quizzes are rigorously reviewed, monitored and continuously updated by our expert board to maintain accuracy, relevance, and timeliness.

  • Current Version
  • Jan 13, 2023
    Quiz Edited by
    ProProfs Editorial Team
  • Jul 06, 2016
    Quiz Created by
    Shane Heuer

Related Topics

Back to Top Back to top
Advertisement
×

Wait!
Here's an interesting quiz for you.

We have other quizzes matching your interest.