Application of Technology OA Exam Test Bank |
Complete Practice Exam Questions with Answers
and Rationales | Latest Update 2026
Question 1
System security involves protection against:
A. Poor system design
B. Noncompliant users
C. Deliberate attacks, errors, omissions, disasters, and viruses
D. Vendor breach of support contract
Answer: C
Rationale: System security protects against deliberate attacks, errors, omissions,
disasters, and viruses. It encompasses a comprehensive approach to safeguarding
information systems from various threats.
Question 2
Which of the following is a mechanism that logs a user off the system after a specified
period of inactivity on the terminal or computer?
A. Automatic sign-off
B. Remote access
C. Automatic access
D. Automatic password protection
Answer: A
Rationale: Automatic sign-off logs users off after a specified period of inactivity to
prevent unauthorized access if a user leaves a terminal unattended.
Question 3
The sharing of private information in a situation in which a relationship has been
established for the purpose of treatment, or delivery of services, with the understanding
that this information will remain protected is ______?
A. Information privacy
B. Privacy
pg. 1
,C. Confidentiality
D. Information system security
Answer: C
Rationale: Confidentiality is the sharing of private information within a trusted
relationship with the understanding that the information will remain protected.
Question 4
______ is a combination of hardware and software that forms a barrier between
systems, or different parts of a single system to protect those systems from unauthorized
access.
A. Antivirus software
B. Firewall
C. Physical security
D. Application security
Answer: B
Rationale: A firewall is a combination of hardware and software that forms a barrier
between systems to protect against unauthorized access.
Question 5
The ability to use a health enterprise's information system from outside locations such
as a physician's office is known as ______.
A. Remote access
B. Automatic access
C. System connectivity
D. Auto connectivity
Answer: A
Rationale: Remote access allows users to access a health enterprise's information
system from outside locations.
Question 6
What are the driving forces behind the Health Information Exchange (HIE) movement?
A. Provider demands for cost containment
B. International demands
C. Healthcare insurance reform
D. Federal legislation, and demands for safer, more efficient healthcare
pg. 2
,Answer: D
Rationale: Federal legislation and demands for safer, more efficient healthcare are the
driving forces behind the HIE movement.
Question 7
How do Health Information Exchanges (HIEs) impact healthcare delivery?
A. HIEs have the capacity to improve the quality of care delivered by decreasing access
to records
B. HIEs have limited impact at this time
C. HIEs increase the efficiency and potentially the quality of the healthcare delivery
system
D. HIEs have not been shown to impact the safety of care delivered
Answer: C
Rationale: HIEs increase the efficiency and potentially the quality of the healthcare
delivery system by enabling better information sharing.
Question 8
Information and data privacy:
A. Provide protection for healthcare information only
B. Includes the right to choose the conditions and extent to which information is shared
C. Are best maintained through paper backups
D. Only applies when a HIPAA release form is signed
Answer: B
Rationale: Information and data privacy includes the right to choose the conditions
and extent to which information is shared.
Question 9
The Health Information Technology for Economic and Clinical Health Act (HITECH) is
known for all of the following except:
A. Including a privacy rule establishing national standards for protecting health
information
B. Funded workforce training, and new technology research and development in HIT
C. Ensured the collection of aggregate data that could be used to improve policy
decisions
D. Provided funds and incentives to increase the adoption of EHRs by providers
pg. 3
, Answer: A
Rationale: The privacy rule establishing national standards for protecting health
information is part of HIPAA, not HITECH.
Question 10
The SWOT analysis is conducted in what phase of information system life cycle?
A. Evaluation phase
B. Monitoring and control phase
C. Implementation phase
D. Strategic planning phase
Answer: D
Rationale: SWOT analysis (Strengths, Weaknesses, Opportunities, Threats) is
conducted during the strategic planning phase of the information system life cycle.
Question 11
Training documents are developed and user training occurs in which phase of the
project management life cycle (PMLC)?
A. Evaluation phase
B. Design/plan phase
C. Implementation phase
D. Monitoring and control phase
Answer: C
Rationale: Training documents and user training occur during the implementation
phase of the project management life cycle.
Question 12
Maintenance of an information system includes all of the following except:
A. Problem solving and debugging
B. Training end users
C. Performing file-backup procedures
D. Updating security protections
Answer: B
Rationale: Training end users is part of implementation, not maintenance.
Maintenance includes problem solving, backups, and security updates.
pg. 4