SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
HIPAA
Start Test
Study First
Subjects
:
certifications
,
hipaa
Instructions:
Answer
50
questions in
15 minutes
.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Battery
illegal touching of another person
a service company that recieves electronic or paper claims from the provider - checks and prepares them for processing - and transmits them in HIPAA-complaint format to the correct carriers
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
Designated record set
2. Confidentiality
3. Protecting healthcare coverage for employees who change jobs - allowing them to continue existing plans with a new employer.
Rule
De-Identified Information
Portability
should only be used when no other - more secure mode of transmission is available
4. Releasing patient information
generally only patient can auth release of own medical record - there are a few exceptions
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
should only be used when no other - more secure mode of transmission is available
Insurance portability - administrative simplification - privacy and security
5. A general HIPAA requirement
safeguards health & wealthfare of Medicare/Medicaid beneficiaries & protect program integrity
A written set of questions requiring written answers from a plaintiff or defendant under oath
only those who meed to know should have access to patient information
Standard
6. TPO
A court order requiring someone to appear in court on a certain date time and reason. A medical record could be subpoenaed.
concerns noncriminal disputes between private parties
treatment - payment - & healthcare operations
Limited data set
7. EPHI
Electronic Protected Health Information
Health Insurance Portability and Accountability Act of 1996 (passed by congress because of portability problems - also to protect PHI)
U.S. goverment
individuals such as cleaning staff and consultants who work in the office. These individuals do not need access to patient info but may come in contact while completing their duties
8. Statutory
The body of laws made by states is their own statutory laws
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
may be disclosed to public health agencies - patient identifiers are removed so it's covered by HIPAA
Regulations
9. Policies and procedures use to protect electronic information from unauthorized access
must be reported to authorities by law
same legal standards apply to all patient records whether on paper or computer
have a unique password and it should be changed frequently
Security
10. Some state laws specifically protect __________. A patient would need to sign a specific request.
human immunodeficiency virus/acquired immune deficiency syndrome (HIV/AIDS)
need to know
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
testimony under oath
11. Under some circumstances ...
What types of disclosures do not require patient permission?
should only be used when no other - more secure mode of transmission is available
a minor - rather than the parent - must sign the release of patient information
Health Insurance Portability and Accountability Act of 1996 (passed by congress because of portability problems - also to protect PHI)
12. Good samaritan law
Privacy
illegal touching of another person
Electronic transmission
state law that protects healthcare professionals from liability when they provide emergency assistance/services within their scope of training
13. interrogatory
Covered transactions
safeguards health & wealthfare of Medicare/Medicaid beneficiaries & protect program integrity
A written set of questions requiring written answers from a plaintiff or defendant under oath
addresses portability of insurance coverage when employees change or lose their jobs
14. The person recieving treatment
Medical data from which individual identifiers have been removed; also known as a redacted or blinded record.
Patient
judge made law from decisions of a court - interpretation of constitution and statuatory law - often known as precedents
generally only patient can auth release of own medical record - there are a few exceptions
15. All persons who will have access are required to...
What types of disclosures do not require patient permission?
Limited data set
have a unique password and it should be changed frequently
testimony under oath
16. What information do patients NOT have access to?
Tort
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
testimony under oath
Electronic transmission
17. Document that includes the standards
Ethical
false charges and malicious oral statements about someone
What types of disclosures do not require patient permission?
Rule
18. A written document detailing a health care provider's privacy practices.
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
the philosophical study of moral values and rules - conducts
Notice of Privacy Practices (NPP)
Limited data set
19. Subpoenas
A court order requiring someone to appear in court on a certain date time and reason. A medical record could be subpoenaed.
patient discharges doctor with letter - doctor formally withdraws from patient with a certified letter or patient no longer needs treatment
same legal standards apply to all patient records whether on paper or computer
human immunodeficiency virus/acquired immune deficiency syndrome (HIV/AIDS)
20. Any set of codes use to encode health care data elements.
may be disclosed to public health agencies - patient identifiers are removed so it's covered by HIPAA
Code sets
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
law that permits a person w/ a legal age and sound mind to give their body to donation
21. Freedom from unauthorized intrusion
Health Information
Privacy
treatment - payment - & healthcare operations
Notice of Privacy Practices (NPP)
22. IIHI
Covered entities
it must have an accompanying disclaimer stating the fax information cannot be shared with any other party w/o patient's written consent
Encryption
Individually Identifiable Health Information
23. Name - address - date of birth - phone/fax numbers - social security number - medical record number - and photographs - nursing and physician notes - billing and other treatment records used during a patient's visit in a hospital or office.
Examples of PHI
although medical records are confidential - there are times when they can be released w/o a patient consent.
Code sets
a minor - rather than the parent - must sign the release of patient information
24. HIPAA states...
only those who meed to know should have access to patient information
although medical records are confidential - there are times when they can be released w/o a patient consent.
U.S. Department of Health and Human Services (HHS; established national standards for HIPAA) - Centers for Medicare and Medicaid Services (CMS; enforce insurance portability and transaction/code set requirements) - Office for Civil Rights (OCR; enfor
Electronic transmission
25. OIG - Office of the Inspector General
law concerned with public wrongs against society
Ethical
although medical records are confidential - there are times when they can be released w/o a patient consent.
safeguards health & wealthfare of Medicare/Medicaid beneficiaries & protect program integrity
26. In HIPAA language health plans - Health care clearinghouses - and all health care providers that transmit HIPAA standard transactions electronically are called covered entities. Hospitals - nursing homes - hospices - pharmacies - physician practices
Transaction
false charges and malicious oral statements about someone
Covered entities
Examples of PHI
27. Includes records maintained by or for a covered entity.
have a unique password and it should be changed frequently
law that permits a person w/ a legal age and sound mind to give their body to donation
Malfeasance
Designated record set
28. Guidelines and standards made by government agencies and licensing boards that have the authority to enforce compliance
Firewalls
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
individuals in their mid- to late teens who legally live outside of parents' or guardians' control
Regulations
29. See & Copy their health records - update health records - obtain a list of the institution's disclosures - other than for payment & healthcare operations - request a restriction on a certain uses or disclosures - choose how to receive their health in
have a unique password and it should be changed frequently
also called biomedical ethics - the moral dilemmas and issues of advanced medicine and medical research
Patient rights under HIPAA
Ethical
30. Verify the identification of anyone requesting patient information.
U.S. goverment
Patient
Verification
Ethical
31. Key entities
individuals in their mid- to late teens who legally live outside of parents' or guardians' control
illegal touching of another person
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
U.S. Department of Health and Human Services (HHS; established national standards for HIPAA) - Centers for Medicare and Medicaid Services (CMS; enforce insurance portability and transaction/code set requirements) - Office for Civil Rights (OCR; enfor
32. Who regulates HIPAA?
Limited data set
need to know
same legal standards apply to all patient records whether on paper or computer
U.S. goverment
33. Privacy Officer
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
improper performance of an otherwise lawful act. civil
Portability
malpractice
34. Unlawful act done without permission.
h/c workers --qualified people of organizations(perf. data processinf or transcript) -certain gov. auth. (pub health activities) -appropriate auth(protect vic. of abuse) -law enforcement officials or judicial orders
Electronic transmission
Malfeasance
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
35. Implied contract
addresses portability of insurance coverage when employees change or lose their jobs
security rule
Health Insurance Portability and Accountability Act of 1996 (passed by congress because of portability problems - also to protect PHI)
a contract that comes about from the actions of the parties rather than words
36. Protected Health Information (PHI)
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
Any information that would identify a patient (name - add - tele - DOB - SSN - email - med. rec. number - etc)
Firewalls
Examples of PHI
37. Hardware or software designed to prevent unauthorized access to electronic information.
Duty; duty of care - Derelict; breach of the duty of care - Direct cause; legally recognizable injury occurs as a result of breach of care - Damage; wrongful activity must have been the cause
need to know
Patient
Firewalls
38. Ethics
it must have an accompanying disclaimer stating the fax information cannot be shared with any other party w/o patient's written consent
law that permits a person w/ a legal age and sound mind to give their body to donation
the philosophical study of moral values and rules - conducts
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
39. Civil law
U.S. Department of Health and Human Services (HHS; established national standards for HIPAA) - Centers for Medicare and Medicaid Services (CMS; enforce insurance portability and transaction/code set requirements) - Office for Civil Rights (OCR; enfor
Invasion of Privacy Publishing
comes on after a few idle seconds and the use of a privacy screen should be mandatory
concerns noncriminal disputes between private parties
40. Deposition
testimony under oath
security rule
treatment - payment - & healthcare operations
Notice of Privacy Practices (NPP)
41. Titile II of HIPAA
Medical data from which individual identifiers have been removed; also known as a redacted or blinded record.
concerns noncriminal disputes between private parties
concerned with mostly with h/c providers. It addresses fraud and abuse - administrative simplification and medical liability
safeguards health & wealthfare of Medicare/Medicaid beneficiaries & protect program integrity
42. 4d's of negligence
Security
Patient Identifiable Information
Duty; duty of care - Derelict; breach of the duty of care - Direct cause; legally recognizable injury occurs as a result of breach of care - Damage; wrongful activity must have been the cause
De-Identified Information
43. Common law
false charges and malicious oral statements about someone
judge made law from decisions of a court - interpretation of constitution and statuatory law - often known as precedents
have a unique password and it should be changed frequently
same legal standards apply to all patient records whether on paper or computer
44. What are the 3 purposes of HIPAA?
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
the philosophical study of moral values and rules - conducts
Verification
Insurance portability - administrative simplification - privacy and security
45. The computer screen should have a screensaver that...
parent of a minor - legal guardian - Agent (patient selected on behalf in h/c power of attorney)
improper performance of an otherwise lawful act. civil
comes on after a few idle seconds and the use of a privacy screen should be mandatory
Security
46. Transmission of information between two parties fro financial or administrative activities.
a minor - rather than the parent - must sign the release of patient information
Psychotherapy notes - information for legal proceedings - information exempted from disclosure under CLIA
Transaction
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
47. The limited amount of patient information to be disclosed - depending on circumstances.
Minimum necessary
Duty; duty of care - Derelict; breach of the duty of care - Direct cause; legally recognizable injury occurs as a result of breach of care - Damage; wrongful activity must have been the cause
Standard
have a unique password and it should be changed frequently
48. Protected health information from which certain patient identifiers have been removed
Minimum necessary
Limited data set
same legal standards apply to all patient records whether on paper or computer
illegal touching of another person
49. Any wrongdoing for which an action for damages may be brought
Tort
Every office should have one! - responsible for making surethat thise office is HIPAA compliant - privacy officer should be.. an effective communicator with ability to answer questions about sespected HIPPA violations and complaints
in order to maintain patient confidentiality - fax machines must be kept in areas not accessible to patients.
improper performance of an otherwise lawful act. civil
50. Medical records can be released w/o consent to...
Minimum necessary
h/c workers --qualified people of organizations(perf. data processinf or transcript) -certain gov. auth. (pub health activities) -appropriate auth(protect vic. of abuse) -law enforcement officials or judicial orders
should never be released w/o a patient's signed consent or court order
Malfeasance