HIPAA Flashcards

1
Q

What does HIPAA stand for?

A

Health Insurance Portability and Accountability Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

True or False: HIPAA is a United States federal law.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the primary goal of HIPAA?

A

To protect the privacy and security of health information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two main rules under HIPAA?

A

Privacy Rule and Security Rule

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which entity enforces the HIPAA regulations?

A

Office for Civil Rights (OCR)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is considered protected health information (PHI) under HIPAA?

A

Any information that can be used to identify an individual’s health status or history

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

True or False: Covered entities under HIPAA include healthcare providers, health plans, and healthcare clearinghouses.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the minimum necessary rule under HIPAA?

A

Requires covered entities to only use or disclose the minimum necessary PHI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the penalty for HIPAA violations?

A

Fines ranging from $100 to $50,000 per violation, up to $1.5 million per year

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a Business Associate Agreement (BAA) under HIPAA?

A

A contract between a covered entity and a business associate outlining how PHI will be protected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the purpose of the HIPAA Breach Notification Rule?

A

To require covered entities to notify individuals affected by a breach of their PHI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the deadline for reporting a breach of PHI under the HIPAA Breach Notification Rule?

A

Within 60 days of discovering the breach

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the three key elements of the Security Rule under HIPAA?

A

Administrative safeguards, physical safeguards, and technical safeguards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

True or False: The HIPAA Privacy Rule applies to all forms of PHI, regardless of the medium.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the purpose of the HIPAA Security Rule?

A

To establish national standards for the protection of electronic PHI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the difference between the HIPAA Privacy Rule and the HIPAA Security Rule?

A

Privacy Rule focuses on protecting the privacy of PHI, while Security Rule focuses on the security of electronic PHI

17
Q

What is the role of the HIPAA Privacy Officer within a covered entity?

A

To oversee the development and implementation of HIPAA privacy policies and procedures

18
Q

What is the purpose of the HIPAA Omnibus Rule?

A

To strengthen privacy and security protections for PHI under HIPAA

19
Q

What is the Safe Harbor method for de-identifying PHI under HIPAA?

A

Removing 18 specified identifiers from the health information

20
Q

What is the HIPAA Security Rule’s requirement for access controls?

A

Implement technical policies and procedures that allow only authorized persons to access electronic PHI

21
Q

What is the purpose of the HIPAA HITECH Act?

A

To promote the adoption and meaningful use of health information technology

22
Q

What is the HIPAA Privacy Rule’s requirement for individual rights?

A

To provide individuals with rights over their health information, including the right to access and amend their records

23
Q

What is the HIPAA Security Rule’s requirement for audit controls?

A

Implement hardware, software, and procedural mechanisms that record and examine activity in information systems

24
Q

What is the purpose of the HIPAA Enforcement Rule?

A

To establish procedures for investigations and hearings for HIPAA violations