How Many Types Of Unique Identifiers Are Defined By Hipaa
92 questions across 0 topics. Use the find bar or section chips to jump to what you need.
Protected health information (PHI) includes
Both medical and financial records of patients.
Which federal government office is responsible to investigate HIPAA privacy complaints?
Office for Civil Rights
Faxing is still permitted under HIPAA law.
True
All four type of entities written in the original law have been issued unique identifiers.
False
Under HIPAA, members of the press can
Receive the same information as any other person would when asking for a patient by name.
A health care provider who is compliant with the Privacy and Security Rules of HIPAA has greatly improved protection against medical identity theft.
True
What are the three types of covered entities that must comply with HIPAA?
Health plans, health care providers, and health care clearinghouses
The new National Provider Identifier (NPI) has "intelligence" that allows you to find out the provider's specialty.
False
When registering a patient for outpatient or inpatient services, the office does not need to enter complete information prior to the encounter. It can be found out later.
False
Use of the EIN on a standard transaction is required
Wrong answer: to identify when an employee is enrolled or disenrolled in a health plan.
HIPAA allows disclosure of PHI in many new ways.
False
Fraud and abuse investigation of HIPAA Privacy Rule is under the direction of
Officer for Civil Rights.
Standardization of claims allows covered entities to
Wrong answer: All of the above.
The adopted standard identifier for employers is the
EIN
Match set for patient identifiers (only half the answers sorry :( )
False
Notice of Privacy Practices (NOPP) must be given to patients every time they visit the facility.
Health care providers, health plans, patients, employers
The law Congress passed in 1996 mandated identifiers for which four categories of entities?
Department of Health and Human Services Web site.
Questions other people have asked about HIPAA can be found by searching FAQ at
Wrong answer: by contacting your state's insurance commissioner.
Filing a complaint with the government about a violation of HIPAA is possible
True.
One reason not to use the SSN for patient identifiers is that there is no check digit for verification of the number.
keep electronic information secure, keep all information private, allow continuation of health coverage, and standardize the claims process.
Congress passed HIPAA to focus on four main areas of our health care system. They are to
False
If a covered entity has disclosed some protected health information (PHI) in violation of HIPAA, a patient can sue the covered entity for damages.
Wrong Answer: Office for Civil Rights
Enforcement of the unique identifiers is under the direction of
Department of Health and Human Services
Which government department did Congress direct to write the HIPAA rules?
Wrong Answer: Office for Civil Rights Web site.
The source documents for original federal documents such as the Federal Register can be found at
False
Prescriptions may only be picked up by the patient to protect the privacy of the individual's health information.
Both medical and financial records of patients.
Privacy of PHI includes
False
All four parties on a health claim now have unique identifiers.
Wrong answer: health plans, healthcare clearinghouse, health care providers.
What are the three covered entities that must comply with HIPAA?
health claims will be submitted on the same form.
Administrative Simplification means that all
improve efficiency, effectiveness, and safety of the health care system.
HIPAA requires that using unique identifiers
Office of E-Health Services and Standards
Which federal government office is responsible to investigate non-privacy complaints about HIPAA law?
is necessary for Workers' Compensation claims and when verifying enrollment in a plan.
Including employers in the standard transaction
obtaining personal medical information for use in submitting false claims or seeking medical care or goods.
Medical identity theft is
True
HIPAA seeks to protect individual PHI and discloses that information only when it is in the best interest of the patient.
the HPID (health plan identifier)
Match the type of NPI code Type Code 1 or Type Code 2 as mandated by HIPAA for a health care provider with the covered entity listed. Type Code 1 and Type Code 2:
federal income taxes.
Health plan identifiers defined for HIPAA are
False
Funding to pay for oversight and compliance to HIPAA is provided by
True
The unique identifier for employers is the Social Security Number (SSN) of the business owner.
False
Administrative Simplification focuses on reducing the time it takes to submit health claims. The unique identifiers are part of this simplification.
Wrong answer: a. it has been written as law by HIPAA and the government will be better able to oversee health care.
When a patient is transferred to another facility, access to the medical records by the receiving facility is no longer permitted under HIPAA.
Wrong answer: only the doctor's office phone number on voicemail.
Two of the reasons for patient identifiers are
account for the release of PHI
In keeping with the "minimum necessary" policy, an office may leave
False
American Health Information Management Association (AHIMA) has found that the problems of complying with HIPAA Privacy Rule are mainly those that
False
The National Provider Identifier (NPI) issued by Centers for Medicare and Medicaid Services (CMS) replaces only those numbers issued by private health plans.
False
When a patient refuses to sign a receipt of the NOPP, the facility will ask the patient to leave since they cannot treat the patient without a signature.
True
Covered entities who violate HIPAA law are only punished with civil, monetary penalties.
Simplify electronic transmission of claims information
HIPAA serves as a national standard of protection.
two digits, a hyphen, then nine other digits without intelligence.
Coded identifiers for all parties included in a claims transaction are needed to
receive a list of patients who have identified themselves as members of the same particular denomination.
The Employer Identification Number (EIN) contains
their name will not be disclosed on a published list of patients being treated at the facility.
When visiting a hospital, clergy members are
Other health care providers can access the medical record of a patient for better coordination of care.
When patients "opt-out" of the facility directory, it means
False
The purpose of health information exchanges (HIE) is so
Allow patients secure, encrypted access to their own medical record held by the provider.
The HITECH (Health information Technology for Economic and Clinical Health) mandates all health care providers adopt high standards of technology without any compensation for the cost to individual providers
True
Health care providers set up patient portals to
True
One process mandated to health care providers is writing prescriptions via e-prescribing.
All of the above
One additional benefit of completely electronic medical records is that more accurate data can be obtained from a greater population, so efficient research can be done to improve our country's health status.
Each patient can add or adjust the information included in the record.
The long range goal of HIPAA and further refinements of the original law is
True
One benefit of personal health records (PHR) is that
From Department of Health and Human Services website
With the ruling in the Omnibus Rule of 2013, any genetic information is now covered by HIPAA Privacy and Security Rule.
Patient portal
How can you easily find the latest information about HIPAA?
Since the electronic medical record (EMR) is the legal medical record kept by each provider who generated the record.
Patients are given access to their physician's EMR to view their own records through a (an)
All of the above
Reliable accuracy of a personal health record is limited
Unique information about you and the characteristics found in your DNA.
To comply with HIPAA, it is vital to
Authorized providers treating the same pt.
Genetic information is
False
The purpose of Health Information Exchange (HIE) is to facilitate secure encrypted transport of health information between
The incident retained in personnel file and immediate termination
Any changes or additions made by patients in their Personal Health record are automatically updated in the Electronic Medical Record (EMR).
Voice mail messages
If any staff member is found to have violated HIPAA rules, what is a possible result?
meaningful use
Meaningful Use program included incentives for physicians to begin using all but which of the following?
American Recovery and Reinvestment Act (ARRA) of 2009
A result of this federal mandate brought increased transparency and better efficiency, and empowered patients to utilize the electronic health record of their physician to view their own medical records. This mandate is called
False
The Health Information Technology for Economic and Clinical Health (HITECH) is part of
Affordable Care Act (ACA) of 2010
The Personal Health Record (PHR) is the legal medical record.
Maintain a crosswalk between ICD-9-CM and ICD-10-CM.
Which federal act mandated that physicians use the Health Information Exchange (HIE)?
patient portal
The Centers for Medicare and Medicaid Services (CMS) set up the ICD-9-CM Coordination and maintenance Committee to
PHR can be modified by the patient; EMR is the legal medical record
Electronic messaging is one important means for patients to confer with their physicians. What platform is used for this?
false
What is the difference between Personal Health Record (PHR) and Electronic Medical Record (EMR)?
false
HIPAA in 1996 enacted security measures that do not need updating and are valid today as written.
All of these
When there is a difference in state law and HIPAA, HIPAA will always supersede the local or state law.
American Recovery and Reinvestment Act (ARRA) of 2009.
Health Information Exchanges (HIE) are designed to allow authorized physicians to exchange health information. Which federal law(s) influenced the implementation and provided incentives for HIE?
Patient
The Meaningful Use mandate is part of
Affordable Care Act (ACA) of 2009
Who is responsible to update and maintain Personal Health Records?
Centers for Medicare and Medicaid Services (CMS).
The implementation of unique Health Plan Identifiers (HPID) was mandated in which ruling?
Tax return information
The Medicare Electronic Health Record Incentive Program is part of Affordable Care Act (ACA) and is under the direction of
Omnibus Rule of 2013
What information is not to be stored in a Personal Health Record (PHR)?
centers for medicare and medicaid services
Genetic Information is now protected as all other Personal Health Information (PHI) with the passing of which federal law?
Wrong Answer: Centers for Medicare and Medicaid Services (CMS)
Which organization directs the Medicare Electronic Health Record Incentive Program?
Wrong Answer: Electronic Medical Record (EMR)
Physicians were given incentives to use "e-prescribing" under which federal mandate?
Wrong Answer: Office for Civil Rights
What is the name of the format that allows other providers to access another physician's record of a patient?
Wrong Answer: Encryption software
Which federal office has the responsibility to enforce updated HIPAA mandates?
Wrong answer: Covered entities
Which safeguard is not required for patients to access their Patient Portal
Wrong Answer: Centers for Medicare and Medicaid Services (CMS) Website
Strengthened restrictions on security redefineed the subcontractors of business associates who might have even incidental exposure to Personal Health Information (PHI) as
True
Where is the best place to find the latest changes to HIPAA law?
Wrong Answer: Centers for Medicare and Medicaid Services (CMS)
Looking for a different version?
CBTs get updated every year. Search for the exact version you're taking (e.g. "cyber awareness 2025").
Search all study materials