Exam 1- HIPAA Flashcards

1
Q

What is the intent of HIPPA?

A
  • To prevent loss of insurance when you change jobs.

- To ensure the privacy of Protected Health Information (PHI)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does “HIPPA” stand for?

A

Health Insurance Portability and Accountability Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the patient’s four rights?

A
  1. The ability to make informed choices when seeking care.
  2. The ability to find out how public health information (PHI) is used
  3. To limit the release of PHI to the minimum necessary.
  4. The right to examine and obtain copies of their health records & request corrections.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two rules of HIPAA?

A

1) Privacy Rule

2) Security Rule

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does the privacy rule provide?

A

Provides for the PRIVACY of electronic health information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does the Security Rule establish?

A

Establishes the STANDARDS FOR THE PRIVACY of the electronic information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Regarding your health, what is protected?

A
  • Blood work
  • Diagnoses
  • EEGs
  • EKGs
  • Test Results
  • Conversations between patient & health care provider
  • Billing info
  • Medical info in your health insurer’s computer system
  • Any identifying factors of the client
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is “individually identifiable health information”?

A
  • Name
  • Address
  • Telephone number
  • Email
  • Medical record number
  • SSN
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

According to HIPAA, what are the employer’s responsibilities?

A
  1. To notify patients about their privacy rights and how PHI is used.
  2. To adopt and IMPLEMENT privacy procedures
  3. To train employees in privacy procedures
  4. To designate an individual to be responsible
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Who has to follow HIPAA? (The “covered entities”)

A
  • Doctors
  • Nurses
  • Hospitals
  • Clinics
  • Nursing Homes
  • Health insurer’s insurance
  • HMOs
  • Medicare & Medicade
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a “covered entity”?

A

A healthcare provider that conducts some transactions in an electronic format or uses a clearing house.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are some “non-covered entities”?

A

Life insurance companies, employers, schools, worker’s compensation carriers who might have medical info about you, & state agencies and law-enforcement.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Name 4 covered transactions.

A
  1. Electronic Health care claims
  2. Electronic remittance & payment advice
  3. Checking the status of a claim
  4. Referral certification & authorization
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What are electronic forms?

A
Internet
Extranet 
Leased lines
Dial-up lines
Private networks
Magnetic tape
Disk
CD media
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are authorization rules?

A

Written authorization; you must keep a copy and the patient gets a copy. Authorization may be revoked at any time.

When faxing, the recipient must be at the fax machine at the other end.

Must have:

  • Date
  • Purpose of disclosure
  • Expiration date
  • Signature/date
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Maryjane Rees Language, Speech, and Hearing Clinic (MRLSHC) Confidentiality

A
  • Requires a new authorization form every semester
  • Signed release form to send and receive information
  • Information exchange release form
  • School site visit release form
17
Q

MRLSHC: who may remove faxes from the machine?

A

Only department secretaries, department chair, and clinic coordinator.

18
Q

MRLSHC: True or False

Billing is done directly through U.S. mail

A

TRUE

19
Q

MRLSHC: True or False

Does not need written permission to exchange information (in any format)

A

FALSE

Written permission is needed to exchange information in ANY format

20
Q

Describe what “Notice of Privacy Practice” is.

A

Patients must receive a letter stating how you protect their PHI and maintain confidentiality; they must also sign a form stating that they received this information.