with Carefully Structured Questions
and Correct Verified Answers Graded
A+ 2026
A risk analysis & management process includes, but is not limited to, the following
activities?
A. Maintain continuous, reasonable, and appropriate security protections
1
,B. Document the chosen security measures and, where required, the rationale for
adopting those measures
C. Evaluate the likelihood and impact of potential risks to e-PHI
D. Implement appropriate security measures to address the risks identified in the risk
analysis
E. All the above ANSWER >> E. All of the above
Security Management Process, Security Personnel, Information Access Management,
Workforce Training and Management, and Evaluation are all parts of what?
A. Administrative Safeguards
B. Physical Safeguards
C. Technical Safeguards
D. None of the above ANSWER >> A. Administrative Safeguards
When was the Health Insurance Portability and Accountability Act (HIPAA), Public Law
104-191 enacted?
A. April 28, 2007
B. August 21, 1996
C. July 18, 2011
D. August 27, 1983 ANSWER >> B. August 21,1996
Access Control, Audit Controls, Integrity Controls, and Transmission Security are all a
part of what?
A. Administrative Safeguards
B. Physical Safeguards
C. Technical Safeguards
D. None of the above ANSWER >> C. Technical Safeguards
With HIPAA, what Information is Protected? **(Select all that apply)**
A. Education records and/or certifications and licenses.
B. Treatment and/or the provision of health care to the individual.
2
,C. Financial information and/or the past, present, or future payment for the provision of
health care to the individual.
D. Name, address, birth date, and Social Security Number.
E. Employment records and/or terms of employment.
F. Diagnosis and/or the individual's past, present or future physical or mental health or
condition. ANSWER >> B. Treatment and/or the provision of health care to the
individual.
C. Financial information and/or the past, present, or future payment for the provision of
health care to the individual.
D. Name, address, birth date, and Social Security Number.
F. Diagnosis and/or the individual's past, present or future physical or mental health or
condition.
Who is Covered by the Privacy Rule? **(Select all that apply)**
A. Health Plans
B. Health Care Providers
C. Health Care Clearinghouses
D. Healthcare Power of Attorney
E. Business Associates
F. Next of kin ANSWER >> A. Health Plans
B. Health Care Providers
C. Health Care Clearinghouses
E. Business Associates
Facility Access and Control, and workstation and Device Security are both a part of
what?
A. Administrative Safeguards
B. Physical Safeguards
C. Technical Safeguards
3
, D. None of the above ANSWER >> B. Physical Safeguards
At which coaching session is it best to set SMART goals?
A. First Session
B. Second Session
C. Sixth Session
D. After 2 months of coaching ANSWER >> A. First Session
_________ are statements of intended results spoken or written in the first person.
A. Goals
B. Reflections
C. Missions
D. Affirmations ANSWER >> D. Affirmations
Goal-setting theory includes four mechanisms for behavior change. Which of the
following is not a mechanism of goal-setting theory?
A. Directed attention
B. Persistence
C. Motivation
D. Strategy ANSWER >> C. Motivation
Research indicates positive affect and emotion can not only affect mental health but
also physical health by:
A. Decreasing pain
B. Enhancing immune function
C.Increased longevity
D. All of the above ANSWER >> D. All of the above
You as the coach practice the steps of Nonviolent Communication ( NVC ) with your
clients for expressing empathy. Which distinction below is NOT part of NVC?
A. Express feelings, not thoughts
4