2/14/14-HIPAA Flashcards

1
Q

What does HIPAA stand for?

A

Health Insurance Portability and Accountability Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What was the intent of HIPAA?

A
  • to prevent loss of insurance when you change jobs

- to ensure the privacy of PHI (protected Health Information)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What did HIPAA start out as?

A

a portability law, and they realized privacy would be a big issue

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the patient’s rights according to HIPAA?

GO BACK TO THIS CARD AND LISTEN, NOT COMPLETE!**

A
  • the ability to make informed choices when seeking care
  • The ability to find out how Personal Health Information is used.
  • To limit the release of PHI to the minimum necessary
  • They have the right to see their records
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the two rules within HIPAA?

A
  1. Privacy rule: privacy of electronic health information (WHAT)
  2. Security Rule: Establishes the standards for the privacy of the electronic information (HOW)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Through HIPAA, what is protected?

A

anything to do with your health:

  • Blood work
  • Diagnoses
  • EEGs
  • EKGs
  • Any and all test results
  • Etc.
  • Conversations between you and your doctor or nurses
  • Billing information
  • medical information in your health insurers computer system
  • Medical information that identifies you cannot be unnecessarily shared
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Through HIPAA, another thing that is protected is individually identifiable health information, describe what this is.

A

This is a subset of health information:

  • Name
  • Address
  • Telephone number
  • Email
  • Medical Record #
  • SSN
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

According to HIPAA, what are the employer’s responsibilities?

A
  • notify patients about their privacy rights and how PHI is used.
  • Adopt & IMPLEMENT privacy procedures
  • Train employees in privacy procedures
  • designate an individual to be responsible

**This happens mostly in the hospital or medical private practice (clinic)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Who has to follow HIPAA?

A
  • doctors
  • nurses
  • hospitals
  • clinics
  • nursing homes
  • Health insurers insurance
  • HMO
  • Medicare and Medicaid

**these are all considered covered entities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

According to HIPAA, what are covered entities?

A

-a health care provider that conducts certain transactions in an electronic format or uses a clearing house

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

According to HIPAA, who are not covered entities?

A
  • life insurance companies
  • employers
  • schools
  • worker’s comp carriers that might have medical information about you
  • State agencies & Law enforcement
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

According to HIPAA, what are covered transactions?

A
  • electronic health care claims
  • electronic remittance & payment advice
  • checking the status of a claim
  • referral certification & authorization
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

According to HIPAA, what are considered electronic forms?

A
  • internet
  • extranet
  • leased lines
  • dial-up lines
  • private networks
  • magnetic tape, disk, or CD media
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

According to HIPAA, what are the authorization rules?

A
  • written authorization
  • you must keep a copy
  • patient must get a copy
  • authorization may be revoked at any time
  • date
  • purpose of disclosure
  • expiration date
  • signature/date
  • when faxing, the recipient must be at the fax machine at the other end. Call to ensure this
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

At the MRLSHC, what do we require in terms of confidentiality?

A
  • we require a new authorization form each semester
  • signed RELEASE FORM to send information
  • signed RELEASE FORM to receive information
  • information exchange release form
  • school site visit release form

**Only department secretaries, chair, and clinic coordinator may remove faxes from the machine

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What does a notice of privacy practices include?

A
  • Patients must receive a letter stating how you protect their PHI and maintain confidentiality.
  • They must sign a form stating that they received this information.