Answers Graded A+
Which of the following are common causes of Under HIPAA, a CE is a health plan, a health
breaches? - ANSWER -All of the above care clearinghouse, or a health care provider
engaged in standard electronic transactions
Breaches are commonly associated with human covered by HIPAA.
error at the hands of a workforce member.
Improper disposal of electronic media devices
containing PHI or PII is also a common cause of
breaches. Theft and intentional unauthorized The e-Government Act promotes the use of
access to PHI and PII are also among the most electronic government services by the public and
common causes of privacy and security improves the use of information technology in the
breaches. Another common cause of a breach government. - ANSWER -True
includes lost or stolen electronic media devices
containing PHI and PII such as laptop
computers, smartphones and USB storage
drives. Lost or stolen paper records containing What of the following are categories for punishing
PHI or PII also are a common cause of breaches. violations of federal health care laws? -
ANSWER -All of the above
The three main categories of punishment for
A Privacy Impact Assessment (PIA) is an violating federal health care laws include: criminal
analysis of how information is handled: - penalties, civil money penalties, and sanctions.
ANSWER -All of the above
-To ensure handling conforms to applicable
legal, regulatory, and policy requirements Technical safeguards are: - ANSWER -
regarding privacy Information technology and the associated
-To determine the risks and effects of collecting, policies and procedures that are used to protect
maintaining and disseminating information in and control access to ePHI
identifiable form in an electronic information
system
-To examine and evaluate protections and
alternative processes An incidental use or disclosure is not a violation
of the HIPAA Privacy Rule if the covered entity
(CE) has: - ANSWER -All of the above
Under the Privacy Act, individuals have the right -Implemented the minimum necessary standard
to request amendments of their records - Established appropriate administrative
contained in a system of records. - safeguards
ANSWER -True - Established appropriate physical and technical
safeguards
Under HIPAA, a covered entity (CE) is defined
as: - ANSWER -All of the above A covered entity (CE) must have an established
1/3