Privacy & Security in the HIPAA Statute Who is Covered by HIPAA What is Covered by HIPAA HIPAA’s Other Concepts
100
What is Privacy?
The right of the patient to control to whom their health information is disclosed.
100
Who are covered entities?
Health care provider, health plan and health care clearing house.
100
What is a three-part test?
For information to be PHI (Protected Health Information) it must meet a ____________.
100
What is the minimum necessary requirement?
If a business associate or covered entity only accesses a persons PHI on a “need to know” basis, they are meeting which requirement.
200
What is Security?
Measures that are taken to control access and protect information from unauthorized disclosure, alteration, destruction or loss.
200
What (or who) is a business associate (BA)?
A person or organization that performs functions or activities on behalf of a covered entity, but is not a part of the covered entity.
200
What is paper, electronic, imaged and oral?
PHI can exist in these four forms.
200
What is a Designated Record Set (DRS)?
Records maintained by or for a covered entity including medical records, billing records, and enrollment, payment, claims, adjudication, and case or medical management record systems.
300
What those who are bound to the HIPAA rule do?
Ensure workforce compliance.
300
What is a Business Associate Agreement (BAA)?
A contract that lists specific responsibilities associated with patient information, initiated by a covered entity for a person or organization to sign.
300
What is 18 elements and safe harbor method?
The information had this removed to deidentify PHI is this method.
300
What is a Legal Health Record (LHR)?
A record that could be disclosed in response to requests for legally admissible health records.
400
What is the focus of security?
Safeguard the information.
400
What is a work force?
Covered entities paid employees.
400
What is a Limited Data Set?
A data set that excludes the most direct identifiers of a person.
400
What is administrative, regulatory, financial and operational information?
The information not included in the DHR or LHR.
500
What is HIPAA, Health Insurance Portability and Accountability Act?
Enacted by Congress in 1996.
500
What is HITECH (Health Information Technology for Economic and Clinical Health)?
A BAA must meet HIPAA and __________ requirements.
500
What is 50 years?
It takes this long for health information to lose its PHI status.
500
What is disclosure, use and request?
The three ways PHI is handled, according to HIPAA.






HIPAA Privacy & Security Jeopardy Game - 285-2

Press F11 for full screen mode



Limited time offer: Membership 25% off


Clone | Edit | Download / Play Offline