Guide
Which of the following statements best describes the HIPAA Privacy Rule? - correct answer ✔✔
The HIPAA Privacy Rule is a federal statute governing health information confidentiality.
The HIPAA Privacy Rule is a state statute governing health information confidentiality.
The HIPAA Privacy Rule is a federal regulation governing health information confidentiality. -
Correct
The HIPAA Privacy Rule is a state regulation governing health information confidentiality.
Is HIPAA a federal statute? Enacted by whom? - correct answer ✔✔ the HIPAA Privacy Rule is a
federal regulation promulgated by an administrative agency (HHS). The HIPAA statute is a
federal statute enacted by Congress.
The HIPAA Privacy Rule does not regulate which of the following: - correct answer ✔✔ Health
plans
Health care clearinghouses
Health care providers that transmit health information in electronic form in connection with
certain standard transactions, including health care claims.
None of the above. - Correct
Which of the following is not a "health care provider" under the HIPAA Privacy Rule - correct
answer ✔✔ A physician (e.g., Dr. Phil).
A hospital (e.g., Norman Regional Health System).
A pharmacy (e.g., CVS or Walgreens).
, An attorney (e.g., Stacey Tovino). - Correct
Which of the following falls within the definition of a "covered entity" under the HIPAA Privacy
Rule? - correct answer ✔✔ A self-insured group health plan that is self-administered and has 50
participants. - Correct
An employer that has no health care components.
An insured group health plan that is self-administered and has 25 participants.
None of the above.
Which of the following is not a "provider of medical or health services" for purposes of the
HIPAA Privacy Rule's definition of "health care provider"? - correct answer ✔✔ A psychologist.
A home health agency. - Correct
A nurse mid-wife.
A clinical social worker.
Which of the following statements was true about a business associate (BA) before the
enactment of the American Recovery and Reinvestment Act (ARRA)? That is, pre-2009, which of
the following statements was true? - correct answer ✔✔ Business associates were directly
regulated by the HIPAA Privacy Rule and could be subject to civil penalties for violations of the
HIPAA Privacy Rule.
Business associates were directly regulated by the HIPAA Privacy Rule and could be subject to
criminal penalties for violations of the HIPAA Privacy Rule.
Business associates were directly regulated by the HIPAA Privacy Rule and could be subject to
civil and criminal penalties for violations of the HIPAA Privacy Rule.
None of the above. - Correct
Which of the following statements is true about a business associate (BA) after the enactment
of the American Recovery and Reinvestment Act (ARRA)? That is, post-2009, which of the
following statements is true? - correct answer ✔✔ Business associates are directly regulated by