HIPAA Flashcards
What does HIPAA stand for?
Health Insurance Portability and Accountability Act
True or False: HIPAA is a United States federal law.
True
What is the primary goal of HIPAA?
To protect the privacy and security of health information
What are the two main rules under HIPAA?
Privacy Rule and Security Rule
Which entity enforces the HIPAA regulations?
Office for Civil Rights (OCR)
What is considered protected health information (PHI) under HIPAA?
Any information that can be used to identify an individual’s health status or history
True or False: Covered entities under HIPAA include healthcare providers, health plans, and healthcare clearinghouses.
True
What is the minimum necessary rule under HIPAA?
Requires covered entities to only use or disclose the minimum necessary PHI
What is the penalty for HIPAA violations?
Fines ranging from $100 to $50,000 per violation, up to $1.5 million per year
What is a Business Associate Agreement (BAA) under HIPAA?
A contract between a covered entity and a business associate outlining how PHI will be protected
What is the purpose of the HIPAA Breach Notification Rule?
To require covered entities to notify individuals affected by a breach of their PHI
What is the deadline for reporting a breach of PHI under the HIPAA Breach Notification Rule?
Within 60 days of discovering the breach
What are the three key elements of the Security Rule under HIPAA?
Administrative safeguards, physical safeguards, and technical safeguards
True or False: The HIPAA Privacy Rule applies to all forms of PHI, regardless of the medium.
True
What is the purpose of the HIPAA Security Rule?
To establish national standards for the protection of electronic PHI