AND ANSWERS WITH STUDY GUIDE DETAILED AND
VERIFIED FOR GUARANTEED PASS, LATEST UPDATE 2025
GRADED A
Mercy Hospital personnel need to review the medical records of Katie
Grace for utilization review purposes (#1). They will also be sending her
records to her physician for continuity of care (#2). As they pertain to Mercy
Hospital, these two functions are - CORRECT ANSWER use (#1) and
disclosure (#2)
The purpose of the implementation specifications of the HIPAA security
rule is to provide - CORRECT ANSWER instruction for
implementation of standards
The age of majority in most states is - CORRECT ANSWER 18 and
older
Services that are statutorily non-covered by Medicare can be located on
the - CORRECT ANSWER Medicare Notice of Exclusions From
Medicare Benefits
Dr. Watson is known to chronically not remember his password and ask
other physicians and nurses to use their passwords. This is reported by
various staff, but the security officer ignores the complaints since Dr.
Watson is the chief of staff. The hospital most likely has not complied with
which of the following? - CORRECT ANSWER sanction policy
The OIG has specific compliance guidance for all of the following entities
except - CORRECT ANSWER pharmacies
Although HIPAA is not the first piece of federal privacy legislation, it is more
expansive than the Federal Privacy Act of 1974, which applied privacy
rules to - CORRECT ANSWER federal agencies
,The EMTALA regulations include all but which of the following? -
CORRECT ANSWER Non-Medicare, indigent patients must be
transferred to the nearest Level 1 trauma center.
Breach notification requirements apply to - CORRECT ANSWER
HIPAA covered entities
HIPAA business associates
non-business associate PHR vendor
Correct all of these
The Joint Commission's quality improvement activities for health record
documentation include all but which of the following core performance
measures for hospitals? - CORRECT ANSWER hypertension
The Americans with Disabilities Act - CORRECT ANSWER applies to
impairments that substantially limit major life activities
Mr. Smith was admitted to University Hospital by Dr. Collins. Mr. Smith's
hospital bill will be paid by Blue Cross Insurance. Upon discharge from the
hospital, who owns the health record of Mr. Smith? - CORRECT
ANSWER University Hospital
The privacy rule generally requires documentation related to its
requirements to be retained for - CORRECT ANSWER 3 years
Fred resigned from his position at University Hospital. According to the
HIPAA security rule, his access to the electronic health record system
should be terminated - CORRECT ANSWER promptly upon
resignation
In the situation of behavioral healthcare information a healthcare provider
may disclose health information on a patient without the patient's
authorization in which of the following circumstances? - CORRECT
ANSWER court order
, duty to warn
involuntary commitment proceedings
Correct all of these
Disclosure of worker's compensation records is governed by: - CORRECT
ANSWER state statues
The most common place to find a firewall is between: - CORRECT
ANSWER an organization's internal network and the internet.
Risk management and quality improvement programs are related because
of which of the following reasons? - CORRECT ANSWER They share
similar underlying processes.
Disclosure regarding reportable conditions under state laws and
regulations: - CORRECT ANSWER must be included in the AOD
maintained by the facility
The Hill-Burton Act - CORRECT ANSWER provided hospitals with
money for construction and modernization
The following reporting exceptions to the doctrine of preemption are
allowable except for which of the following? - CORRECT ANSWER
marketing
Jeremy Lykins was required to undergo a physical exam prior to becoming
employed by San Fernando Hospital. Jeremy's medical information is -
CORRECT ANSWER not protected by the privacy rule because it is
part of a personnel record
The HIPAA privacy rule - CORRECT ANSWER both a and b are
incorrect