Deck 2: Electronic Health Records, HIPAA, and Hitech: Sharing and Protectin
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/69
Play
Full screen (f)
Deck 2: Electronic Health Records, HIPAA, and Hitech: Sharing and Protectin
1
Which is necessary and permitted through the HIPAA Privacy Rule for patients' treatment, payment, and health care operations (TPO)?
A) use of PHI
B) disclosure of PHI
C) both use of PHI and disclosure of PHI
D) neither use of PHI nor disclosure of PHI
A) use of PHI
B) disclosure of PHI
C) both use of PHI and disclosure of PHI
D) neither use of PHI nor disclosure of PHI
C
Both use and disclosure of PHI are necessary and permitted for patients' treatment, payment, and health care operations (TPO).
Both use and disclosure of PHI are necessary and permitted for patients' treatment, payment, and health care operations (TPO).
2
What establishes standards for the exchange of financial and administrative data among covered entities?
A) Office of Inspector General
B) Transactions and Code Sets
C) Department Of Justice
D) Office Civil Rights
A) Office of Inspector General
B) Transactions and Code Sets
C) Department Of Justice
D) Office Civil Rights
B
HIPAA Electronic Transactions and Code Sets (TCS) establishes standards for the exchange of financial and administrative data among covered entities.
HIPAA Electronic Transactions and Code Sets (TCS) establishes standards for the exchange of financial and administrative data among covered entities.
3
If a practice is being investigated for fraud, what may be the first document to research?
A) compliance plan
B) Privacy Notice
C) ICD book
D) HCPCS reference manual
A) compliance plan
B) Privacy Notice
C) ICD book
D) HCPCS reference manual
A
A compliance plan helps to defend a practice if it is being investigated for fraud.
A compliance plan helps to defend a practice if it is being investigated for fraud.
4
Which code set is used for billing dental procedures?
A) ICD
B) IRS
C) CDT-4
D) HCPCS
A) ICD
B) IRS
C) CDT-4
D) HCPCS
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
5
Which complies with the HIPAA Security Rule?
A) selecting a mixture of characters for the password
B) sharing your password with the office manager or doctor
C) writing down your password and hiding it
D) keeping user ID and password the same
A) selecting a mixture of characters for the password
B) sharing your password with the office manager or doctor
C) writing down your password and hiding it
D) keeping user ID and password the same
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
6
Which is a future benefit of the Affordable Care Act?
A) legal residents cannot obtain insurance in order to keep premiums low
B) the cost of pharmaceutical drugs will be lowered
C) preventative services will be completely covered
D) the benefits will not change
A) legal residents cannot obtain insurance in order to keep premiums low
B) the cost of pharmaceutical drugs will be lowered
C) preventative services will be completely covered
D) the benefits will not change
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
7
Which federal agency detects health care fraud and abuse?
A) Office for Civil Rights (OCR)
B) Department of Justice (DOJ)
C) Office of E-Health Standards and Services (OESS)
D) Office of the Inspector General (OIG)
A) Office for Civil Rights (OCR)
B) Department of Justice (DOJ)
C) Office of E-Health Standards and Services (OESS)
D) Office of the Inspector General (OIG)
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
8
Which federal agency enforces criminal violations under federal law?
A) Office for Civil Rights (OCR)
B) Department of Justice (DOJ)
C) Office of E-Health Standards and Services (OESS)
D) Office of the Inspector General (OIG)
A) Office for Civil Rights (OCR)
B) Department of Justice (DOJ)
C) Office of E-Health Standards and Services (OESS)
D) Office of the Inspector General (OIG)
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
9
Which scenario best describes abuse?
A) the doctor tells you to bill for an undocumented procedure
B) the doctor tells you to bill for an unnecessary procedure that was done
C) the medical assistant cashes an insurance check in their personal account
D) sending an invoice to multiple insurance companies
A) the doctor tells you to bill for an undocumented procedure
B) the doctor tells you to bill for an unnecessary procedure that was done
C) the medical assistant cashes an insurance check in their personal account
D) sending an invoice to multiple insurance companies
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
10
Which scenario best describes fraud?
A) the doctor tells you to bill for an undocumented procedure
B) the doctor tells you to bill for an unnecessary procedure that was done
C) the medical assistant bills for a preauthorized procedure
D) sending an invoice to multiple insurance companies to see who pays
A) the doctor tells you to bill for an undocumented procedure
B) the doctor tells you to bill for an unnecessary procedure that was done
C) the medical assistant bills for a preauthorized procedure
D) sending an invoice to multiple insurance companies to see who pays
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
11
Which of the following will be introduced in the future?
A) patient identifier
B) health plan identifier
C) both patient and health plan identifiers
D) neither patient nor health plan identifiers
A) patient identifier
B) health plan identifier
C) both patient and health plan identifiers
D) neither patient nor health plan identifiers
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
12
Which measure does not enforce the HIPAA Security Rule?
A) secure internet connections
B) backup file procedures
C) transmitting unencrypted data
D) enforced security policies
A) secure internet connections
B) backup file procedures
C) transmitting unencrypted data
D) enforced security policies
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
13
Which is also known as the Stimulus Package?
A) HITECH
B) HIPAA
C) CMS
D) ARRA
A) HITECH
B) HIPAA
C) CMS
D) ARRA
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
14
What is the best description of an encounter?
A) telephone call
B) face-to-face meeting
C) something that should be billed
D) something that should be investigated
A) telephone call
B) face-to-face meeting
C) something that should be billed
D) something that should be investigated
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
15
Which is not a goal of compliance plans?
A) prevent fraud and abuse
B) enhance patient education guidelines
C) ensure compliance with laws
D) defend the practice if it is investigated or prosecuted
A) prevent fraud and abuse
B) enhance patient education guidelines
C) ensure compliance with laws
D) defend the practice if it is investigated or prosecuted
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
16
A social security number is an example of a (n):
A) EIN
B) code set
C) identifier
D) NPI
A) EIN
B) code set
C) identifier
D) NPI
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
17
Which act requires covered entities to notify affected individuals following the discovery of a breach of unsecured health information?
A) HITECH
B) HIPAA
C) Privacy rule
D) breach notification
A) HITECH
B) HIPAA
C) Privacy rule
D) breach notification
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
18
Which law guides the use of federal stimulus money to promote the adoption and meaningful use of health information technology, mainly using electronic health records?
A) OIG
B) HIPAA
C) ARRA
D) HITECH
A) OIG
B) HIPAA
C) ARRA
D) HITECH
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
19
What are people or organizations that furnish, bill, or are paid for health care in the normal course of business called?
A) clearinghouses
B) insurers
C) providers
D) business associates
A) clearinghouses
B) insurers
C) providers
D) business associates
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
20
What type of program encrypts data traveling between the office and the internet, such as patients' Social Security numbers, so that the information is secure?
A) medical management
B) practice management
C) backup software
D) data software
A) medical management
B) practice management
C) backup software
D) data software
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
21
Who has the authority to authorize the release of information on a patient to anyone not directly involved in their care?
A) doctor
B) "next of kin"
C) office manager
D) legal representative
A) doctor
B) "next of kin"
C) office manager
D) legal representative
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
22
What are the Centers for Medicare and Medicaid Services (CMS) responsible for?
A) implementing annual federal budget acts and laws
B) lowers the costs of screening procedures for diseases
C) coding and billing
D) enforcing new rules and regulations
A) implementing annual federal budget acts and laws
B) lowers the costs of screening procedures for diseases
C) coding and billing
D) enforcing new rules and regulations
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
23
A compliance plan does not cover which of the following?
A) EEO (Equal Employment Opportunity)
B) OSHA (Occupational Safety and Hazard Administration)
C) coding and billing
D) referrals and authorizations
A) EEO (Equal Employment Opportunity)
B) OSHA (Occupational Safety and Hazard Administration)
C) coding and billing
D) referrals and authorizations
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
24
What did the NPI (National Provider Identifier) replace?
A) NPPES
B) EIN
C) Medicare UPIN
D) CMS
A) NPPES
B) EIN
C) Medicare UPIN
D) CMS
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
25
If a violation is found during a medical practice investigation and a compliance plan is typically followed, what may it indicate to the Office of Inspector General (OIG)?
A) direct negligence
B) lack of communication
C) practice of abuse
D) may be simple errors
A) direct negligence
B) lack of communication
C) practice of abuse
D) may be simple errors
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
26
Which main federal government agency is responsible for health care?
A) Health Care Financing Administration (HCFA)
B) Centers for Medicare and Medicaid Services (CMS)
C) Department of Health and Human Services (HHS)
D) Health Department
A) Health Care Financing Administration (HCFA)
B) Centers for Medicare and Medicaid Services (CMS)
C) Department of Health and Human Services (HHS)
D) Health Department
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
27
What is the impermissible use or disclosure of PHI that could pose significant risk to the affected person called?
A) hack
B) pirate
C) breach
D) decrypt
A) hack
B) pirate
C) breach
D) decrypt
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
28
What is a medical practice's written plan for complying with regulations?
A) compliance plan
B) HIPAA notice
C) privacy notice
D) regulation plan
A) compliance plan
B) HIPAA notice
C) privacy notice
D) regulation plan
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
29
Which is not a valid component of a compliance plan?
A) audit and monitor compliance with government regulations
B) to have inconsistent policies and procedures
C) provide staff with training and communication
D) having a guideline by which to correct errors
A) audit and monitor compliance with government regulations
B) to have inconsistent policies and procedures
C) provide staff with training and communication
D) having a guideline by which to correct errors
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
30
Which is (are) elements included in a compliance plan according to the Office of the Inspector General?
A) training
B) ongoing communication
C) both training and ongoing communication
D) dependents will be covered under their parent's private plan until age 26
A) training
B) ongoing communication
C) both training and ongoing communication
D) dependents will be covered under their parent's private plan until age 26
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
31
Which is a valid aspect of the Affordable Care Act?
A) preventive services will be covered by insurance with no copayment required
B) illegal aliens will not be denied health insurance
C) pre-existing conditions will not be covered
D) young adults up to age 22 will remain as a dependent on their parent's private insurance
A) preventive services will be covered by insurance with no copayment required
B) illegal aliens will not be denied health insurance
C) pre-existing conditions will not be covered
D) young adults up to age 22 will remain as a dependent on their parent's private insurance
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
32
Which standards have been set to govern the electronic exchange of health information?
A) identifiers
B) code sets
C) standard transactions
D) All of these
A) identifiers
B) code sets
C) standard transactions
D) All of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
33
A compliance plan constitutes which of the following
A) a written document
B) a committee
C) both a written document and a committee
D) neither a written document nor a committee
A) a written document
B) a committee
C) both a written document and a committee
D) neither a written document nor a committee
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
34
What is any group of codes used for encoding data elements?
A) ICD
B) CPT
C) code set
D) transaction codes
A) ICD
B) CPT
C) code set
D) transaction codes
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
35
Which is a valid Breach Notification Procedure?
A) Notify patients of breaches "without reasonable delay" within 90 days
B) Notice to business associates from covered entities
C) Notice to ex-spouses on breaches involving patients who are deceased.
D) None of these
A) Notify patients of breaches "without reasonable delay" within 90 days
B) Notice to business associates from covered entities
C) Notice to ex-spouses on breaches involving patients who are deceased.
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
36
Which code set is for specifying diseases, injuries, impairments, and other health related problems?
A) ICD
B) CPT
C) HCPS
D) CDT-4
A) ICD
B) CPT
C) HCPS
D) CDT-4
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
37
Which are covered entities under HIPAA/HITECH that must follow the regulations?
A) Patients
B) Health Providers
C) Business Associates
D) Collection Agencies
A) Patients
B) Health Providers
C) Business Associates
D) Collection Agencies
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
38
A retention schedule
A) explains what records to keep
B) explains how long records must be saved
C) covers the method(s) of record storage
D) all of these
A) explains what records to keep
B) explains how long records must be saved
C) covers the method(s) of record storage
D) all of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
39
The standards for written documentation include
A) clarity
B) legibility
C) signed and dated entries
D) all the above
A) clarity
B) legibility
C) signed and dated entries
D) all the above
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
40
Which one of these would be the most secure password?
A) 123456
B) july14
C) f1H*%4hs
D) forwork
A) 123456
B) july14
C) f1H*%4hs
D) forwork
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
41
What standards are set under the rules of the HIPAA Electronic Health Care Transactions and Code Sets?
A) electronic formats
B) identifiers
C) codes
D) All of these
A) electronic formats
B) identifiers
C) codes
D) All of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
42
In electronic health records, documents may be created in a variety of ways, but they are
A) ultimately viewed on a computer screen
B) always printed out in the medical office
C) always annotated by handwriting
D) None of these
A) ultimately viewed on a computer screen
B) always printed out in the medical office
C) always annotated by handwriting
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
43
The provider owns the actual medical records, but the information in a record belongs to
A) any medical professional
B) the patient
C) the payer
D) None of these
A) any medical professional
B) the patient
C) the payer
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
44
Which of the following is fraudulent behavior?
A) making a mistake on a claim
B) deception with the intent to benefit
C) Both making a mistake on a claim and deception with the intent to benefit
D) Neither making a mistake on a claim nor deception with the intent to benefit
A) making a mistake on a claim
B) deception with the intent to benefit
C) Both making a mistake on a claim and deception with the intent to benefit
D) Neither making a mistake on a claim nor deception with the intent to benefit
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
45
The HIPAA Privacy Rule is enforced by the OCR. What does OCR stand for?
A) Office for Claim Returns
B) Office for Certified Rules
C) Office for Civil Rights
D) Office for Civil Responsibility
A) Office for Claim Returns
B) Office for Certified Rules
C) Office for Civil Rights
D) Office for Civil Responsibility
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
46
Under what conditions should a medical assistant change the facts on an insurance claim?
A) if the patient requests the change
B) if the patient fails to make a payment
C) if the change will save the practice money
D) The facts must never be changed
A) if the patient requests the change
B) if the patient fails to make a payment
C) if the change will save the practice money
D) The facts must never be changed
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
47
When can information about a patient's drug abuse be disclosed without authorization?
A) if a prospective employer requests it
B) if a physician from another practice requests it
C) if the patient's spouse requests it
D) None of these
A) if a prospective employer requests it
B) if a physician from another practice requests it
C) if the patient's spouse requests it
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
48
A standard and unique identifier for health care providers to use in filing health care claims is called
A) Employer Identification Number (EIN)
B) National Provider Identifier (NPI)
C) research data
D) code sets
A) Employer Identification Number (EIN)
B) National Provider Identifier (NPI)
C) research data
D) code sets
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
49
The HIPAA Privacy Rule is enforced by
A) the OIG
B) the OCR
C) CMS
D) HHS
A) the OIG
B) the OCR
C) CMS
D) HHS
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
50
Collecting payment in full for a procedure from both the patient and the insurance carrier is an example of
A) liability
B) fraud
C) libel
D) audits
A) liability
B) fraud
C) libel
D) audits
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
51
Altering a patient's chart to increase the payment the physician receives is an example of
A) medical liability
B) subpoena
C) accountability
D) fraud
A) medical liability
B) subpoena
C) accountability
D) fraud
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
52
SOAP is a format for patients' medical
A) documentation
B) records
C) both documentation and records
D) neither documentation nor records
A) documentation
B) records
C) both documentation and records
D) neither documentation nor records
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
53
What do patients' medical records contain about their health history?
A) facts
B) observations
C) findings
D) All of these
A) facts
B) observations
C) findings
D) All of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
54
Entries in patients' medical records should be descending or ascending in what type of order?
A) chronological
B) alphabetical
C) numerical
D) the order is not important
A) chronological
B) alphabetical
C) numerical
D) the order is not important
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
55
The abbreviation TPO refers to
A) treatment, payment, and health care operations
B) terms, policies, and financial obligations
C) treatment, providers, and organizations
D) terms, providers, and organizations
A) treatment, payment, and health care operations
B) terms, policies, and financial obligations
C) treatment, providers, and organizations
D) terms, providers, and organizations
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
56
What type of schedule do medical offices use to control how long patient information is stored?
A) financial schedule
B) retention schedule
C) referral schedule
D) None of these
A) financial schedule
B) retention schedule
C) referral schedule
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
57
For up to how long can a medical office's financial records be audited after a patient's last visit (assuming that embezzlement or government funding has not occurred)?
A) 3 years
B) 7 years
C) 5 years
D) 10 years
A) 3 years
B) 7 years
C) 5 years
D) 10 years
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
58
A form signed by a patient to permit release of medical information under specific stated conditions is called a(n)
A) acceptance form
B) authorization to disclose information
C) medical release form
D) None of these
A) acceptance form
B) authorization to disclose information
C) medical release form
D) None of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
59
A clearinghouse is a company that helps medical offices and health plans exchange
A) claim data in correct formats
B) employment records
C) accounts payable
D) record retention schedules
A) claim data in correct formats
B) employment records
C) accounts payable
D) record retention schedules
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
60
Under HIPAA, patients' protected health information may be shared without authorization for:
A) payment
B) health care operations
C) treatment
D) All of these
A) payment
B) health care operations
C) treatment
D) All of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
61
______ Releasing protected health information for reasons other than treatment, payment, or health care operations requires which type of patient authorization?
A) written
B) verbal
C) either written or verbal
D) None of these; it cannot be released
A) written
B) verbal
C) either written or verbal
D) None of these; it cannot be released
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
62
What is the relationship between documentation and billing?
A) If a service is not documented, it did not happen.
B) If a service is not documented, it cannot be billed.
C) If a service is not billed, the documentation can be destroyed.
D) If a service has been billed, the documentation can be shredded.
A) If a service is not documented, it did not happen.
B) If a service is not documented, it cannot be billed.
C) If a service is not billed, the documentation can be destroyed.
D) If a service has been billed, the documentation can be shredded.
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
63
Which of these subjects would you not expect to find information about in a patient's medical record?
A) medical allergies and reactions
B) a record of missed or canceled appointments
C) employment and salary records
D) biographical and personal information
A) medical allergies and reactions
B) a record of missed or canceled appointments
C) employment and salary records
D) biographical and personal information
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
64
A medical office's compliance plan should include
A) staff training
B) internal communications
C) a record of all subpoenas received recently
D) both staff training and internal communications
A) staff training
B) internal communications
C) a record of all subpoenas received recently
D) both staff training and internal communications
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
65
Under what circumstances might a patient's protected health information be shared without authorization?
A) court orders
B) workers' compensation cases
C) both court orders and workers' compensation cases
D) it can never be shared
A) court orders
B) workers' compensation cases
C) both court orders and workers' compensation cases
D) it can never be shared
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
66
What is one way that providers can follow the guidelines for the HITECH rule?
A) frequently change passwords
B) access controls
C) make copies of all data
D) all of these
A) frequently change passwords
B) access controls
C) make copies of all data
D) all of these
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
67
Following OIG's guidance can help in the defense against which of the following?
A) a false claims accusation
B) a workers' compensation claim
C) unemployment claim
D) breach of ethical conduct
A) a false claims accusation
B) a workers' compensation claim
C) unemployment claim
D) breach of ethical conduct
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
68
If a physician requests that you bill a procedure that is not documented, what would be the best course of action?
A) bill whatever the doctor requests
B) say that you will comply and avoid the request altogether
C) report it to CMS
D) report it to the compliance officer
A) bill whatever the doctor requests
B) say that you will comply and avoid the request altogether
C) report it to CMS
D) report it to the compliance officer
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck
69
If a practice has discovered that the security or privacy of more than 500 people's PHI has been breached, which establishment must be notified (through the HITECH Act)?
A) prominent media outlets
B) Office of the Inspector General
C) all credit bureaus
D) it can never be shared
A) prominent media outlets
B) Office of the Inspector General
C) all credit bureaus
D) it can never be shared
Unlock Deck
Unlock for access to all 69 flashcards in this deck.
Unlock Deck
k this deck