HIPAA Flashcards

1
Q

TPO

A

treatment

payment

health care operations

it is an exception to when authorization is required to disclose information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Consent vs authorization

A

Consent = treatment only

  • must have consent for treatment before treating
  • emergency= implied if comm not capable

vs. authorization:

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

admin requirements

A

establish system for receiving and responding to complaints

??

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

business associate

A

provide service on behalf of a private entity

clearing house= insurance complaint

must be hipaa compliant

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

penalties

A

employer determines penalty

  • civil vs criminal (civil is less violation)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

what did HITECH require

A

Requiring covered entities to notify patients and HHS (Health and Human Services) of security breaches = failure is willful neglect

Extending privacy and security rules and penalties to business associates

Expanding the requirements for business associate contracts

Broadening individual patient rights concerning their health information

Restricting some permissible uses and disclosures of health information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

if breach of unsecured health care info / privacy they must notify

A

HHS
Pts
news media

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

____ % of violations of hipaa are due to EMR

A

65%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

who is responsible for hipaa violation

A

the person who made the violation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

are you personally liable for penalties if you inappropriatley give info out

A

yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

our audits being done for hipaa violations vs just patient complaint

A

yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

do patients get a portion of the profit from violations

A

yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

are red flag rules still in play

A

no, but identity theft still prevented regarding patients account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Red flag rules

A

anti fraud rules

stronger protection for privacy and security

pic id for EMR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

can you release info to phi risk person??

A

yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

breaches need to be reported within

A

60 days

if over 500 has to go to news/media

17
Q

where does the money go from penalties

A

?