Information Security Officer
Privacy Officer
HIM Director
HR Manager (CO 1) Sarah Williams' responsibilities include leading the incident response team and conducting personnel pertaining to data protection in the Health Information Systems (HIS) Department. Based on her responsibilities, she is most likely in the role of a(n) _____.
Information Security Officer
Privacy Officer
HIM Director
HR Manager (CO 1) Ms. Jones oversees all activities associated with the development, implementation, and administration of Health Science Center policies and procedures, covering patient confidentiality. Based on this information, she is most likely in the position of a(n) _____.
Information Security Officer.
Privacy Officer
HIM Director
HR Manager (CO 9) Which of the following most accurately describes the difference between training and awareness?
Training is less formal and interactive than an awareness program.
Training is more formal and interactive than an awareness program.
A training program is more expensive than an awareness program. An awareness program is more expensive than a training program. (CO 9) Which of the following should you do if an audit does not return any opportunities for improvement?
Hire a consultant to review again.
Consider that the audit components are not detailed enough.
Perform another one the following year.
Conclude that no improvements are needed. (CO 9) Which technical components should be included in developing a checklist for auditing and monitoring compliance?
Authorization controls
Physical access controls
Data encryption mechanisms
All of the above (CO 2) All patient information is designated protected health information (PHI) and includes information that is _____.
stored on electronic media
written format
spoken
All of the above (CO 2) Which of the following is the main purpose of HIPAA?
HIPPA guarantees insurance coverage for all U.S. citizens.
HIPPA improves technology.
HIPPA reduces administrative costs and protects patient information.
All of the above (CO 2) Which of the following headers must appear in a notice of privacy practices?