RHIT Practice Exam 1 (Latest
UPDATE) Questions & Answers 100%
Correct
Which of the following is characteristic of the legal health record?
a. It must be electronic
b. It includes the designated record set
c. It is the record disclosed upon request
d. It includes a patient's personal health record - correct answer c. It is the record
disclosed upon request
The legal health record distinction is important for several reasons. First, it is
important to an organization's business and legal processes. Second, because the
legal health record is the record that is produced upon request, including legal
requests, it becomes important to ensure that the legal health record is legally sound
and defensible as a valid document in legal situations.
,A tool that identifies when a user logs in and out, what actions he or she takes, and
more is called a(n):
a. Audit trail
b. Facility access control
c. Forensic scan
d. Security management plan - correct answer a. Audit trail
An audit trail is a record of system and application activity by users. It can track when
an employee has accessed the system, the actions taken, and how long the employee
has been logged into a system.
Which of the following statements is true regarding HIPAA security?
a. All institutions must implement the same security measures.
b. Institutions are allowed flexibility in the way they implement HIPAA standards.
c. All institutions must implement all HIPAA specifications.
,d. A security risk assessment must be performed every year. - correct answer b.
Institutions are allowed flexibility in the way they implement HIPAA standards.
HIPAA allows a covered entity to adopt security protection measures that are
appropriate for its organization as long as they meet the minimum HIPAA security
standards. Security protections in a large medical facility will be more complex than
those implemented in a small group practice.
Access to health records based on protected health information within a healthcare
facility should be limited to employees who have a:
a. Legitimate need for access
b. Password to access the EHR
c. Report development program
d. Signed confidentiality agreement - correct answer a. Legitimate need for access
The access controls standard requires implementation of technical procedures to
control or limit access to health information. The procedures would be executed
, through some type of software program. This requirement ensures that individuals are
given authorization to access only the data they need to perform their respective jobs.
The release of information function requires the HIM professional to have knowledge
of:
a. Clinical coding principles
b. Database development
c. Federal and state confidentiality laws
d. Human resource management - correct answer c. Federal and state confidentiality
laws
Release of information (ROI) is the process of providing PHI access to individuals or
entities that are deemed to be authorized to either receive or review it. Protecting the
security and privacy of patient information is one of a healthcare organization's top
priorities, and the HIM department is usually responsible for determining appropriate
access to and ROI from patient health records. Knowledge of state and federal
confidentiality laws is critical to the ROI function.
UPDATE) Questions & Answers 100%
Correct
Which of the following is characteristic of the legal health record?
a. It must be electronic
b. It includes the designated record set
c. It is the record disclosed upon request
d. It includes a patient's personal health record - correct answer c. It is the record
disclosed upon request
The legal health record distinction is important for several reasons. First, it is
important to an organization's business and legal processes. Second, because the
legal health record is the record that is produced upon request, including legal
requests, it becomes important to ensure that the legal health record is legally sound
and defensible as a valid document in legal situations.
,A tool that identifies when a user logs in and out, what actions he or she takes, and
more is called a(n):
a. Audit trail
b. Facility access control
c. Forensic scan
d. Security management plan - correct answer a. Audit trail
An audit trail is a record of system and application activity by users. It can track when
an employee has accessed the system, the actions taken, and how long the employee
has been logged into a system.
Which of the following statements is true regarding HIPAA security?
a. All institutions must implement the same security measures.
b. Institutions are allowed flexibility in the way they implement HIPAA standards.
c. All institutions must implement all HIPAA specifications.
,d. A security risk assessment must be performed every year. - correct answer b.
Institutions are allowed flexibility in the way they implement HIPAA standards.
HIPAA allows a covered entity to adopt security protection measures that are
appropriate for its organization as long as they meet the minimum HIPAA security
standards. Security protections in a large medical facility will be more complex than
those implemented in a small group practice.
Access to health records based on protected health information within a healthcare
facility should be limited to employees who have a:
a. Legitimate need for access
b. Password to access the EHR
c. Report development program
d. Signed confidentiality agreement - correct answer a. Legitimate need for access
The access controls standard requires implementation of technical procedures to
control or limit access to health information. The procedures would be executed
, through some type of software program. This requirement ensures that individuals are
given authorization to access only the data they need to perform their respective jobs.
The release of information function requires the HIM professional to have knowledge
of:
a. Clinical coding principles
b. Database development
c. Federal and state confidentiality laws
d. Human resource management - correct answer c. Federal and state confidentiality
laws
Release of information (ROI) is the process of providing PHI access to individuals or
entities that are deemed to be authorized to either receive or review it. Protecting the
security and privacy of patient information is one of a healthcare organization's top
priorities, and the HIM department is usually responsible for determining appropriate
access to and ROI from patient health records. Knowledge of state and federal
confidentiality laws is critical to the ROI function.