HIPPA Flashcards
What does HIPAA stand for?
H- Health
I- Insurance
P- Portability
A- Accountability
A- Act
What is HIPAA and what organizations must comply with it?
HIPAA = Health Insurance Portability and Accountability Act of 1996 established national standards for protection of patient medical information and health care providers such as (nurses, doctors, hospitals, dentists, etc.) must comply with it. It is a federal law imposed on all healthcare organizations including hospitals, physician offices, home health agencies, nursing homes and other providers, as well as health plans and clearing houses, that protects patient health information.
These organizations MUST comply HIPAA:
Hospitals, Physician offices, home health agencies, nursing homes, health plans, clearing houses
HIPAA covers a broad range of issues. Accountability involves “Administrative simplification” which includes:
Privacy, security, uniform transactions, code sets, and identifiers
The Privacy Rule Protects information known as
protected health information
This protects patient information that exists in _______________________, ______________ and____________________________ formats.
written, oral, electronic
The Privacy Rule limits the way in which members of the workforce may use and disclose PHI. Workforce members MUST HAVE JOB-RELATED REASONS to use and disclose
PHI
Workforce members who MUST comply with the HIPAA privacy rule include:
Employees, volunteers, trainees, and other persons who have a job-related reason to access personal health information
The HIPAA Privacy Rule requires that institutions provide all patients with a copy of its:
Notice of Privacy Practices (NOPP). Informs patients of patient rights.
The Notice of Privacy Practices (NOPP) informs patients of their____________. Each patient must ______an acknowledgement after receiving the NOPP.
patient rights, sign
A patient’s privacy rights are communicated to the patient through what notice?
Notice of Privacy Practices (NOPP)
The Privacy Rule requires that institutions designate a Privacy Officer who is responsible for:
The development and implantation of privacy policies, privacy related training education, investigating privacy related complaints, and conducting routine audits ensure compliance
The ______________is a key component
of the HIPAA Privacy Rule.
minimum necessary standard
The standard requires covered entities to:
Evaluate their practices and enhance safeguards to protect access and disclosure of PHI.
For uses of PHI, the covered entity’s policies and procedures must identify who needs access to the information:
To carry out their job duties, the categories or types of PHI needed, and the conditions appropriate to such access.