SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
HIPAA
Start Test
Study First
Subjects
:
certifications
,
hipaa
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Subpoenas
Portability
Electronic data interchange
A court order requiring someone to appear in court on a certain date time and reason. A medical record could be subpoenaed.
Limited data set
2. Disabilities act
3. In HIPAA language health plans - Health care clearinghouses - and all health care providers that transmit HIPAA standard transactions electronically are called covered entities. Hospitals - nursing homes - hospices - pharmacies - physician practices
Individually Identifiable Health Information
Electronic Protected Health Information
Covered entities
concerns noncriminal disputes between private parties
4. 4d's of negligence
Type of consent in which a patient who is unable to give consent is given treatment under the legal assumption that he or she would want treatment.
illegal touching of another person
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
Duty; duty of care - Derelict; breach of the duty of care - Direct cause; legally recognizable injury occurs as a result of breach of care - Damage; wrongful activity must have been the cause
5. Negligence
failure to act with the standard of care that a reasonable person would exercise under the same circumstances
Encryption
Firewalls
Electronic transmission
6. NPP
treatment - payment - & healthcare operations
law that permits a person w/ a legal age and sound mind to give their body to donation
improper performance of an otherwise lawful act. civil
Notice of Privacy Practices
7. Civil law
concerns noncriminal disputes between private parties
Electronic data interchange
Notice of Privacy Practices
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
8. Protecting healthcare coverage for employees who change jobs - allowing them to continue existing plans with a new employer.
malpractice
Portability
Electronic Protected Health Information
a service company that recieves electronic or paper claims from the provider - checks and prepares them for processing - and transmits them in HIPAA-complaint format to the correct carriers
9. Some state laws specifically protect __________. A patient would need to sign a specific request.
security rule
testimony under oath
human immunodeficiency virus/acquired immune deficiency syndrome (HIV/AIDS)
Rule
10. Transmission of information between two parties fro financial or administrative activities.
security rule
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
Transaction
failure to act with the standard of care that a reasonable person would exercise under the same circumstances
11. Guidelines and standards made by government agencies and licensing boards that have the authority to enforce compliance
Electronic Protected Health Information
should only be used when no other - more secure mode of transmission is available
Invasion of Privacy Publishing
Regulations
12. Protected Health Information (PHI)
Regulations
Individually Identifiable Health Information
Any information that would identify a patient (name - add - tele - DOB - SSN - email - med. rec. number - etc)
the philosophical study of moral values and rules - conducts
13. Document that includes the standards
allows patients to give directions to health care providers about treatment choices in circumstances in which the patient may no longer be able to provide that direction. There are two types: Living Will and Durable Power of Attorney
human immunodeficiency virus/acquired immune deficiency syndrome (HIV/AIDS)
Firewalls
Rule
14. Sending information over electronic networks.
Electronic transmission
Tort
it must have an accompanying disclaimer stating the fax information cannot be shared with any other party w/o patient's written consent
De-Identified Information
15. Bioethics
Health Information
need to know
also called biomedical ethics - the moral dilemmas and issues of advanced medicine and medical research
The body of laws made by states is their own statutory laws
16. Releasing patient information
false and malicious writing about another
Limited data set
generally only patient can auth release of own medical record - there are a few exceptions
substance abuse treatment
17. Misfeasance
law concerned with public wrongs against society
Insurance portability - administrative simplification - privacy and security
the philosophical study of moral values and rules - conducts
improper performance of an otherwise lawful act. civil
18. The person recieving treatment
Encryption
Patient
a service company that recieves electronic or paper claims from the provider - checks and prepares them for processing - and transmits them in HIPAA-complaint format to the correct carriers
Regulations
19. EPHI
What types of disclosures do not require patient permission?
Electronic Protected Health Information
located in a secured and private space
Any information that would identify a patient (name - add - tele - DOB - SSN - email - med. rec. number - etc)
20. What information do patients NOT have access to?
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
Covered transactions
What types of disclosures do not require patient permission?
21. IIHI
Examples of PHI
Limited data set
also called biomedical ethics - the moral dilemmas and issues of advanced medicine and medical research
Individually Identifiable Health Information
22. Policies and procedures use to protect electronic information from unauthorized access
may be disclosed to public health agencies - patient identifiers are removed so it's covered by HIPAA
Security
Rule
Electronic data interchange
23. A written document detailing a health care provider's privacy practices.
Notice of Privacy Practices (NPP)
patient discharges doctor with letter - doctor formally withdraws from patient with a certified letter or patient no longer needs treatment
although medical records are confidential - there are times when they can be released w/o a patient consent.
Encryption
24. Hardware or software designed to prevent unauthorized access to electronic information.
substance abuse treatment
Firewalls
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
treatment - payment - & healthcare operations
25. Electronic exchanges of information between two covered-entity business partners using HIPAA mandated transaction standards.
Examples of PHI
individuals such as cleaning staff and consultants who work in the office. These individuals do not need access to patient info but may come in contact while completing their duties
Covered transactions
Ethical
26. Privacy Officer
a contract that comes about from the actions of the parties rather than words
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
Medical data from which individual identifiers have been removed; also known as a redacted or blinded record.
false and malicious writing about another
27. Protected health information from which certain patient identifiers have been removed
Limited data set
Verification
Electronic Protected Health Information
law concerned with public wrongs against society
28. Professional Negligence
Firewalls
malpractice
individuals such as cleaning staff and consultants who work in the office. These individuals do not need access to patient info but may come in contact while completing their duties
What types of disclosures do not require patient permission?
29. Computes and HIPAA
same legal standards apply to all patient records whether on paper or computer
Treatment - payment and health care operations (TPO)
U.S. goverment
Ethical
30. Name - address - date of birth - phone/fax numbers - social security number - medical record number - and photographs - nursing and physician notes - billing and other treatment records used during a patient's visit in a hospital or office.
illegal touching of another person
Examples of PHI
Notice of Privacy Practices (NPP)
Covered entities
31. If a states privacy laws are stricter than HIPAA privacy standards - the state laws take precedence.
individuals in their mid- to late teens who legally live outside of parents' or guardians' control
Any information that would identify a patient (name - add - tele - DOB - SSN - email - med. rec. number - etc)
human immunodeficiency virus/acquired immune deficiency syndrome (HIV/AIDS)
State preemption
32. Includes records maintained by or for a covered entity.
Individually Identifiable Health Information
Designated record set
Covered entities
Tort
33. Data must be backed up at ___________ and those back-up files should be stored ________.
false and malicious writing about another
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
Health Information
regular - in a secure location
34. Clearinghouse
only those who meed to know should have access to patient information
Verification
individuals in their mid- to late teens who legally live outside of parents' or guardians' control
a service company that recieves electronic or paper claims from the provider - checks and prepares them for processing - and transmits them in HIPAA-complaint format to the correct carriers
35. Implied consent
Type of consent in which a patient who is unable to give consent is given treatment under the legal assumption that he or she would want treatment.
Code sets
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
Portability
36. Coded information that can't be read until is decoded.
state laws setting time limit for bringing a lawsuit
Encryption
improper performance of an otherwise lawful act. civil
a contract that comes about from the actions of the parties rather than words
37. Verify the identification of anyone requesting patient information.
Transaction
Verification
Code sets
should only be used when no other - more secure mode of transmission is available
38. Emancipated minors
39. The computer screen should have a screensaver that...
it must have an accompanying disclaimer stating the fax information cannot be shared with any other party w/o patient's written consent
comes on after a few idle seconds and the use of a privacy screen should be mandatory
also called biomedical ethics - the moral dilemmas and issues of advanced medicine and medical research
should only be used when no other - more secure mode of transmission is available
40. The ability to control access and protect information from accidental or intentional disclosure to unauthorized persons and from altercation - destruction - or loss
Ethical
Any information that would identify a patient (name - add - tele - DOB - SSN - email - med. rec. number - etc)
Medical data from which individual identifiers have been removed; also known as a redacted or blinded record.
security rule
41. Title I of HIPAA
addresses portability of insurance coverage when employees change or lose their jobs
What types of disclosures do not require patient permission?
Health Information
Electronic Protected Health Information
42. Deposition
testimony under oath
Malfeasance
substance abuse treatment
Type of consent in which a patient who is unable to give consent is given treatment under the legal assumption that he or she would want treatment.
43. Statue of limitations
need to know
Electronic Protected Health Information
state laws setting time limit for bringing a lawsuit
Type of consent in which a patient who is unable to give consent is given treatment under the legal assumption that he or she would want treatment.
44. Any wrongdoing for which an action for damages may be brought
Tort
same legal standards apply to all patient records whether on paper or computer
law that permits a person w/ a legal age and sound mind to give their body to donation
Electronic data interchange
45. Advanced directives
allows patients to give directions to health care providers about treatment choices in circumstances in which the patient may no longer be able to provide that direction. There are two types: Living Will and Durable Power of Attorney
Tort
Permission
Portability
46. HIPAA
Insurance portability - administrative simplification - privacy and security
Health Information
law that permits a person w/ a legal age and sound mind to give their body to donation
Health Insurance Portability and Accountability Act of 1996 (passed by congress because of portability problems - also to protect PHI)
47. Uniform anotomical gift act
Tort
Standard
Treatment - payment and health care operations (TPO)
law that permits a person w/ a legal age and sound mind to give their body to donation
48. A reason for each use and disclosure of patient information.
Standard
Permission
addresses portability of insurance coverage when employees change or lose their jobs
Duty; duty of care - Derelict; breach of the duty of care - Direct cause; legally recognizable injury occurs as a result of breach of care - Damage; wrongful activity must have been the cause
49. Implied contract
Minimum necessary
Patient rights under HIPAA
a contract that comes about from the actions of the parties rather than words
Limited data set
50. Confidentiality