HCCA CHPC/ HCCA CHPC Exam Study Questions from
K K K K K K K
Actual Past Exam and 100% Correct Answers K K K K K K
What is the purpose of HIPAA? - ANSWER >> • Protect PHI from
K K K K K K K K K K K K
unauthorized disclosure/use; K
• Prevent fraud, waste and abuse (via Administrative
K K K K K K
Simplification);
• Make health insurance portable under ERISA;
K K K K K
• Move health care onto a nationally standardized electronic
K K K K K K K
billing platformK
Ref. https://quizlet.com/6202453/hcca-chpc-overview-flash-
K
cards/
K
More on HIPAA: https://www.hhs.gov/hipaa/index.html
K K K
HIPAA resides in which CFR section? -
K K K K K K
ANSWER >> 45 CFRsections 164.102 through 164.534
K K K K K K K K
https://www.ecfr.gov/current/title-45/subtitle-A/subchapter-
C/part-164
K
What are the subparts of HIPAA part 164? - ANSWER >> HIPAA -
K K K K K K K K K K K K
45 CFR 164, subparts:
K K K K
Subpart A - K K
General rulesSubpart C -
K K K K K
Security
K
Subpart D - K K
Breach notificationSubpart E -
K K K K K
Privacy
K
,https://www.ecfr.gov/current/title-45/subtitle-A/subchapter-
C/part-164
K
How do you determine if an organization is a "Covered Entity"?
K K K K K K K K K K
-
ANSWER >> 1. compare if the organization meets one of the 3typ
K K K K K K K K K K K K K
es of CE (provider, health plan, clearinghouse)
K K K K K K
and
2. determine if the organization electronically transmits one ofthe
K K K K K K K K K K
9 defined transactions:
K K
• Health claims or equivalent encounter information
K K K K K
• Health claims attachments K K
• Enrollment and disenrollment in a health plan K K K K K K
• Eligibility for a health plan K K K K
• Health care payment and remittance advice K K K K K
• Health plan premium payments K K K
• First report of injury K K K
• Health claim status K K
• Referral certification and authorization K K K
In addition, business associates of covered entities must followpar
K K K K K K K K K
ts of the HIPAA regulations.
K K K K
https://www.hhs.gov/hipaa/for-individuals/guidance-materials-
for-consumers/index.html
K
This Act established in 1974 was created for government agencie
K K K K K K K K K
s placing restrictions on how the government can sharethe infor
K K K K K K K K K K
mation maintained in Federal systems of records that might infri
K K K K K K K K K
nge on an individual's privacy rights with other individuals and ag
K K K K K K K K K K
encies. - ANSWER >> The Privacy Act of 1974
K K K K K K K K
,Which of the following is not considered a HIPAA EntityDesignatio
K K K K K K K K K K
n:
1. Affiliated covered entity K K
2. Entity that performs healthcare and non- K K K K K
healthcare component activities including both covered and no K K K K K K K
n-coveredfunctions K
3. A group health plan
K K K
4. Contract arrangement with FEDEX carrier - K K K K K
ANSWER >> 4.Contract arrangement with FEDEX carrier
K K K K K K K K
What is Gramm-Leach-Bliley Act (GLBA)? - ANSWER >> Gramm-
K K K K K K K K
Leach-
K
Bliley Act (GLBA), also known as the Financial Services Moderniza
K K K K K K K K K
tion Act of 1999, includes The Financial Privacy Rule and The Safe
K K K K K K K K K K K
guards Rule requires all financial institutions to protect customer
K K K K K K K K
's personal financial information.
K K K
What is an OHCA? - K K K K
KANSWER >> OHCA (Organized Health Care Arrangement) it's a clin
K K K K K K K K K
ically integrated care setting where individuals receive health care
K K K K K K K K K
from more than one provider. These are joint arrangements/activi
K K K K K K K K
ties and have an IntegratedDelivery System for easy exchange of P
K K K K K K K K K K K
HI data. See 45 CFR
K K K K
160.103. OHCAs can also utilize a joint NPP. See 45 CFR §164.520(d
K K K K K K K K K K K K
).
ACE (Affiliated Covered Entity) do not have an Integrated Deliver
K K K K K K K K K
y System because these are legally separate covered entities that
K K K K K K K K K
are associated in business, or affiliated as a resultof some comm
K K K K K K K K K K K K
on control or ownership.
K K K
, Both the OHCA and the ACE would allow sharing of PHI acrossparti
K K K K K K K K K K K K
cipating entity lines for treatment, payment, operations purposes
K K K K K K K K
(TPO).
What's an ACE? - K K K
KANSWER >> ACE (Affiliated Covered Entity) Legally separate cover
K K K K K K K K
ed entities that share common control/ownership and designate t
K K K K K K K K
hemselves as a single CE forthe purpose of complying with the HIP
K K K K K K K K K K K K
AA Privacy standards.
K K
ACEs do not have an Integrated Delivery System, while OHCAdo
K K K K K K K K K K
, and can share a single NPP. See 45 CFR § 164.520(d)
K K K K K K K K K K K
ACE example: a health system composed on several affiliatedhosp
K K K K K K K K K
itals.
Both the OHCA and the ACE would allow sharing of PHI acrossparti
K K K K K K K K K K K K
cipating entity lines for treatment, payment, operations purposes
K K K K K K K K
(TPO).
What's a Hybrid Entity? -
K K K K
ANSWER >> Entity that conducts bothcovered functions (or health
K K K K K K K K K K
care-functions) and non-covered functions (other biz/non- K K K K K
healthcare functions) to elect to be a "hybrid entity."
K K K K K K K K
For instance, a University System that has a research laboratoryor
K K K K K K K K K K K
academic medical center. K K
The post-secondary functions (non-
K K K
healthcare components) doNOT need to comply with HIPAA.
K K K K K K K K
K K K K K K K
Actual Past Exam and 100% Correct Answers K K K K K K
What is the purpose of HIPAA? - ANSWER >> • Protect PHI from
K K K K K K K K K K K K
unauthorized disclosure/use; K
• Prevent fraud, waste and abuse (via Administrative
K K K K K K
Simplification);
• Make health insurance portable under ERISA;
K K K K K
• Move health care onto a nationally standardized electronic
K K K K K K K
billing platformK
Ref. https://quizlet.com/6202453/hcca-chpc-overview-flash-
K
cards/
K
More on HIPAA: https://www.hhs.gov/hipaa/index.html
K K K
HIPAA resides in which CFR section? -
K K K K K K
ANSWER >> 45 CFRsections 164.102 through 164.534
K K K K K K K K
https://www.ecfr.gov/current/title-45/subtitle-A/subchapter-
C/part-164
K
What are the subparts of HIPAA part 164? - ANSWER >> HIPAA -
K K K K K K K K K K K K
45 CFR 164, subparts:
K K K K
Subpart A - K K
General rulesSubpart C -
K K K K K
Security
K
Subpart D - K K
Breach notificationSubpart E -
K K K K K
Privacy
K
,https://www.ecfr.gov/current/title-45/subtitle-A/subchapter-
C/part-164
K
How do you determine if an organization is a "Covered Entity"?
K K K K K K K K K K
-
ANSWER >> 1. compare if the organization meets one of the 3typ
K K K K K K K K K K K K K
es of CE (provider, health plan, clearinghouse)
K K K K K K
and
2. determine if the organization electronically transmits one ofthe
K K K K K K K K K K
9 defined transactions:
K K
• Health claims or equivalent encounter information
K K K K K
• Health claims attachments K K
• Enrollment and disenrollment in a health plan K K K K K K
• Eligibility for a health plan K K K K
• Health care payment and remittance advice K K K K K
• Health plan premium payments K K K
• First report of injury K K K
• Health claim status K K
• Referral certification and authorization K K K
In addition, business associates of covered entities must followpar
K K K K K K K K K
ts of the HIPAA regulations.
K K K K
https://www.hhs.gov/hipaa/for-individuals/guidance-materials-
for-consumers/index.html
K
This Act established in 1974 was created for government agencie
K K K K K K K K K
s placing restrictions on how the government can sharethe infor
K K K K K K K K K K
mation maintained in Federal systems of records that might infri
K K K K K K K K K
nge on an individual's privacy rights with other individuals and ag
K K K K K K K K K K
encies. - ANSWER >> The Privacy Act of 1974
K K K K K K K K
,Which of the following is not considered a HIPAA EntityDesignatio
K K K K K K K K K K
n:
1. Affiliated covered entity K K
2. Entity that performs healthcare and non- K K K K K
healthcare component activities including both covered and no K K K K K K K
n-coveredfunctions K
3. A group health plan
K K K
4. Contract arrangement with FEDEX carrier - K K K K K
ANSWER >> 4.Contract arrangement with FEDEX carrier
K K K K K K K K
What is Gramm-Leach-Bliley Act (GLBA)? - ANSWER >> Gramm-
K K K K K K K K
Leach-
K
Bliley Act (GLBA), also known as the Financial Services Moderniza
K K K K K K K K K
tion Act of 1999, includes The Financial Privacy Rule and The Safe
K K K K K K K K K K K
guards Rule requires all financial institutions to protect customer
K K K K K K K K
's personal financial information.
K K K
What is an OHCA? - K K K K
KANSWER >> OHCA (Organized Health Care Arrangement) it's a clin
K K K K K K K K K
ically integrated care setting where individuals receive health care
K K K K K K K K K
from more than one provider. These are joint arrangements/activi
K K K K K K K K
ties and have an IntegratedDelivery System for easy exchange of P
K K K K K K K K K K K
HI data. See 45 CFR
K K K K
160.103. OHCAs can also utilize a joint NPP. See 45 CFR §164.520(d
K K K K K K K K K K K K
).
ACE (Affiliated Covered Entity) do not have an Integrated Deliver
K K K K K K K K K
y System because these are legally separate covered entities that
K K K K K K K K K
are associated in business, or affiliated as a resultof some comm
K K K K K K K K K K K K
on control or ownership.
K K K
, Both the OHCA and the ACE would allow sharing of PHI acrossparti
K K K K K K K K K K K K
cipating entity lines for treatment, payment, operations purposes
K K K K K K K K
(TPO).
What's an ACE? - K K K
KANSWER >> ACE (Affiliated Covered Entity) Legally separate cover
K K K K K K K K
ed entities that share common control/ownership and designate t
K K K K K K K K
hemselves as a single CE forthe purpose of complying with the HIP
K K K K K K K K K K K K
AA Privacy standards.
K K
ACEs do not have an Integrated Delivery System, while OHCAdo
K K K K K K K K K K
, and can share a single NPP. See 45 CFR § 164.520(d)
K K K K K K K K K K K
ACE example: a health system composed on several affiliatedhosp
K K K K K K K K K
itals.
Both the OHCA and the ACE would allow sharing of PHI acrossparti
K K K K K K K K K K K K
cipating entity lines for treatment, payment, operations purposes
K K K K K K K K
(TPO).
What's a Hybrid Entity? -
K K K K
ANSWER >> Entity that conducts bothcovered functions (or health
K K K K K K K K K K
care-functions) and non-covered functions (other biz/non- K K K K K
healthcare functions) to elect to be a "hybrid entity."
K K K K K K K K
For instance, a University System that has a research laboratoryor
K K K K K K K K K K K
academic medical center. K K
The post-secondary functions (non-
K K K
healthcare components) doNOT need to comply with HIPAA.
K K K K K K K K