click below
click below
Normal Size Small Size show me how
domain 6
| Question | Answer |
|---|---|
| what is the legal term used to define the protection of health information in a patient-provider relationship? | confidentiality |
| the uniform health care decisions act ranks the next-of-kin in the following order for medical decision-making purposes | spouse, adult child, parent, adult sibling |
| which of the following is a direct command that requires an individual or a representative of an organization to appear in court or to present an object to the court | subpoena |
| employees in the hospital business office may have legitimate access to patient health info without patient authorization based on what hipaa standard/principle? | minimum necessary |
| exceptions to the consent requirement include: | medical emergencies |
| which of the following is required in order to prescribe medications | a drug enforcement agency number |
| which of the following must be reported to the medical examiner | accidental deaths |
| dr. williams is on the medical staff at sutter hospital and he has asked to see the health record of his wife who was recently hospitalized. dr. jones was the pt's physician. of the options listed here, which is the best course of action? | inform dr williams that he cannot access his wife's health info unless she authorizes access through a written release of information |
| under hipaa rules, when an individual asks to see his or her own health information, a covered entity _______ | can deny access to psychotherapy notes |
| the health record is a | defined subset of all patient-specific data created or accumulated by a healthcare provider that may be released to third parties in response to a legally permissible request for pt info |
| privacy can be defined as the | right of an individual to be left alone |
| which of the following statements represents an example of nonmaleficence | HITs must ensure that the patient identifiable info is not released to unauthorized parties |
| attorneys for healthcare organizations use the health record to | protect the legal interests of the facility and its healthcare providers |
| what federal law passed in 1996 resulted in new privacy regulations for healthcare organizations | HIPAA |
| written or spoken permission to proceed with care is classified as | expressed consent |
| to be in compliance with hipaa regulations, a hospital would make its membership in a RHIO known to its patients through which of the following | notice of privacy practices |
| the number that has been proposed for use as a unique patient identification number but is controversial because of confidentiality and privacy concerns is the ______ | social security number |
| in what setting may treatment records travel with the patient between treatment centers? | correctional facility care |
| what dictates how the medical staff operates | medical staff bylaws |
| law enacted by a legislative body is a(n) | statute |
| what stage of the litigation process focuses on how strong a case the opposing party has? | discovery |
| which of the following is not true of notices of privacy practices? | they must contain content that may not be changed |
| what spells out the powers of the three branches of the federal govt? | US constitution |
| what document direct directs an individual to bring originals or copies of records to court? | subpoena duces tecum |
| to comply with hipaa, under usual circumstances, a covered entity must act on a patient's request to review or copy his or her health information within ___ days | 30 |
| the hipaa privacy rule requires that covered entities must limit use, access, and disclosure of phi to only the amount needed to accomplish the intended purpose. what concept is this an example of? | minimum necessary |
| what statement is false? | a consent for use and disclosure of info must be obtained from every patient |
| what is not true about a business associate agreement? | it allows the business associate to maintain phi indefinitely |
| a hospital receives a valid request from a pt for copies of her medical records. the him clerk who is preparing the records removes copies of the pts records from another hospital where the pt was previously treated. according to hipaa, was this correct? | no. the records from the previous hospital are considered part of the designated record set and should be given to the pt |
| a pt requests copies of her personal health information on CD. when the pt goes home, she finds that she cannot read the cd on her computer. the pt then requests the hospital provide the medical records in paper format? | provide the medical records in paper format |
| BEST description of concept of confidentiality | the expectation that personal information shared by an individual with a healthcare provider during the course of care will be used only for its intended purpose |
| the release of information function requires the him professional to have knowledge of | federal and state confidentiality laws |
| the medical record committee is reviewing the privacy policies for a lg outpt clinic. one of the members of the committee remarks that he feels the clinic's practice of calling out a pt's full name in the waiting room is not in compliance with hipaa regs | there is no hipaa violation for announcing a patient's name, but the committee may want to consider implementing practices that might reduce this practice? |
| a health information technician receives a subpoena duces tecum for the records of a discharged patient. to respond the the subpoena, what should the technician do? | review the subpoena to determine what documents must be produced |
| the right of a individual to keep information about hiimself or herself from being disclosed to anyone is a definition of: | privacy |
| what types of covered entity health records are subject to hipaa privacy regulations? | health records in any format |
| mary smith has gone to her dr to discuss her current medical condition, what is the legal term that best describes the type of communication that has occurred between mary and her physician | privileged communication |
| a dr asks to see the medical records of his adult daughter who was hospitalized long ago. what is the best course of action? | inform dr smith that he cannot access his daughter's health record w/o her signed authorization allowing him access to her record. |
| what source of law is known as judge-made or case law? | common law |
| the sequence of the correct steps when evaluating an ethical problem is: | determine the facts, consider the values and obligations of others, consider the choices that are both justified and not justified, identify prevention options |
| what should a hospital do when a state law requires more stringent privacy protection than the federal hipaa privacy standard | comply with both the state law and the hipaa standard |
| jack mitchell, a pt in ross hospital, is being treated gallstones. he has not opted out of the facility directory, callers who request info about him may be given: | general condition and acknowledgement of admission |
| a child is brought into the ED in protective custody (abuse incident). the father wants copies of the record set for the visit, has an id that says he's the dad. what to do? | decline to release the information and contact the hospital's attorney |
| social security number is an identity theft risk. what to do to minimize | avoid displaying the number on any document, screen, or data collection field |
| what is considered an unethical practice? | backdating progress notes |
| what ethical principle is being followed when an HIt professional ensures that patient information is only released to those who have a legal right to access it? | beneficence |
| although the hipaa privacy rule allows patient access to personal health info about themselves, which of the following cannot be disclosed to patients | psychotherapy notes |
| what is a core ethical obligation of health information staff? | protecting patients' privacy and confidential communications |
| under the hipaa privacy standard, which of the following types of protected health info must be specifically id'd in an authorization | psychotherapy notes |
| what penalties can be enforced against a person or entity that willfully and knowingly violates the hipaa privacy rule with the intent to sell, transfer, or use PHI for commercial advantage, personal gain, or malicious harm? | a fine of not more than $250,000, not more than 10 years in jail, or both |
| today, janet kim visited her new dentist for an appointment. she was not presented with a notice of privacy practices. is this acceptable? | no it is a violation of the hipaa privacy rule |
| mercy hospital personnel need to review the medical records of katie grace for utilization purposes (1). they will also be sending her records to her physican for continuity of care (2). under hipaa, these two functions are: | use (1) disclosure (2) |
| per hipaa privacy rule, which of the following requires authorization for research purposes? | use of mary's individually identifiable identification related to her asthma treatments |
| what would be a violation of ahima's code of ethics? | coding an intentionally inappropriate level of service |
| an employee in the pt department arrives early every morning to snoop through the clinical information system for potential information about neighbors and friends. what security mechanism would you implement | information access controls |
| on review of the audit trail for an ehr system, the him director discovers that a departmental employee who has authorized access to pt records is printing far records than the avg user. what would the supervisor do? | determine what information was printed and why |
| what should a hospital do when a state law requires more stringent privacy protection than the federal hipaa privacy standard? | comply with both the state law and the hipaa standard |
| the legal health record is a(n) | a defined subset of all patient-specific data created or accumulated by a healthcare provider that may be releasedto third parties in response to a legally permissible request for patient information |
| what is not true about a business associate agreement | it allows the business associate to maintain indefinitely |