HIPAA - correct answer Health Insurance Portability and Accountability Act
Healthcare provider - correct answer any person or organization who furnishes, bills, or
is paid for healthcare in the normal course of business
PHI (Protected Health Information) - correct answer individually identifiable health
information (demographics like name or SSN, or medial records) -- do not disclose information someone
could use to reverse engineer individual
Minimum Necessary Principle - correct answer make reasonable efforts to limit the use
or disclosure of PHI to a minimum amount necessary to accomplish intended goal
When should you be aware of patient privacy? - correct answer 1. ensuring computer
security
2. communication on the phone
3. sending/receiving faxes and emails
4. printing information
5. Using PHI at desk
6. Dispose of information (only shred)
Who to report to when HIPAA breach - correct answer 1. speak to supervisor
2. speak with EPPA's privacy official (Chad Strathman)
3. you know you've made a mistake - self report
Enforcement - correct answer 1. office for civil right enforces privacy rule
2. civl money penalties - $100 to $50,000 per violation
3. criminal penalties - up to $250,000 and 10 years in jail