#1
Which law governs the protection of health information in the United States?
HIPAA
ExplanationHIPAA governs health information protection in the U.S.
#2
What does HIPAA stand for?
Healthcare Insurance Portability and Accountability Act
ExplanationHIPAA stands for Healthcare Insurance Portability and Accountability Act.
#3
What is the primary objective of the Security Rule under HIPAA?
To safeguard electronic protected health information (ePHI)
ExplanationThe Security Rule aims to protect electronic PHI.
#4
Which of the following statements best describes the purpose of the Privacy Rule under HIPAA?
To protect individuals' rights to their health information
ExplanationPrivacy Rule ensures individuals' rights to health information.
#5
Which of the following is NOT a requirement for covered entities under the HIPAA Privacy Rule?
Obtaining patient consent before sharing health information
ExplanationObtaining patient consent is not a requirement under the Privacy Rule.
#6
Which of the following is NOT considered protected health information (PHI) under HIPAA?
Email address
ExplanationEmail addresses are not classified as PHI under HIPAA.
#7
What is the maximum penalty for HIPAA violations per calendar year for each violation category?
$1,000,000
ExplanationMaximum penalty for HIPAA violations per year is $1,000,000.
#8
What is the purpose of the Health Information Technology for Economic and Clinical Health (HITECH) Act?
To enhance the adoption of health information technology
ExplanationHITECH Act aims to boost the adoption of health information technology.
#9
Which of the following is NOT a key principle of the General Data Protection Regulation (GDPR)?
Data aggregation
ExplanationData aggregation is not a key principle of GDPR.
#10
What is the significance of a Business Associate Agreement (BAA) under HIPAA?
It outlines the obligations of business associates regarding protected health information
ExplanationBAA outlines business associates' obligations regarding PHI.
#11
Which of the following is an example of a covered entity under HIPAA?
Health insurance plan
ExplanationHealth insurance plans are examples of covered entities under HIPAA.
#12
What is the role of the Office for Civil Rights (OCR) in relation to HIPAA?
Enforce HIPAA rules and regulations
ExplanationOCR enforces HIPAA rules and regulations.
#13
Which of the following actions does NOT constitute a breach of protected health information (PHI) under HIPAA?
Loss of PHI due to natural disaster
ExplanationLoss of PHI due to a natural disaster does not constitute a breach under HIPAA.
#14
What is the primary objective of the Breach Notification Rule under HIPAA?
To notify affected individuals and relevant authorities of breaches in a timely manner
ExplanationBreach Notification Rule ensures timely notification of breaches.
#15
Which entity is responsible for enforcing the Health Insurance Portability and Accountability Act (HIPAA)?
Office for Civil Rights (OCR)
ExplanationOCR enforces HIPAA.