Biome HIPAA Training Quiz

1.) A customer wants to send a file that contains PII or PHI. How do you receive the file?
A.) Have the client send the information through Biome's secure upload portal.
B.) Have the client email the file. The client gave me their approval to send the file via emial without encryption.
C.) Have the client encrypt the file with a complex password and send the file via email.
D.) All the above
E.) a or c
2.) What actions can you take to protect confidential information?
A.) Do not share or disclose confidential information with non Biome employees.
B.) Utilize safe computing skills.
C.) Report suspicious privacy and security incidents.
C.) Follow Biome policies (documentation of Biome policies are located in the HIPAA_Security folder in SharePoint, BiomeWiki!!)
E.) All the above
3.) What workstation security safeguards do you have to follow?
A.) Encrypt all information on portable devices with a complex password.
B.) Log out of programs that access PII or PHI when not in use.
C.) Remove all data from local device when it is no longer necessary.
D.) Lock office doors when leaving office for an extended period of time.
E.) All the above
4.) Scenario: you notice that a patient of our customer is a famous movie star. Your friend is a big fan. Can you tell your friend that the start received healthcare?
A.) Yes. I can tell my friend that the star received healthcare. I just cannot tell my friend the type of treatment the star received.
B.) Yes. I already have approval through Biome to access the customer's account.
C.) No. I cannot disclose any patient information to my friend. It is not necessary for my job, and I would be violating the customer and individual's privacy by sharing this information.
D.) a and b
5.) You can look up anybody's healthcare information, even if you do not need the information for your job, as long as you keep the information to yourself.
A.) True. I can look up any information, I just cannot share the information with others.
B.) False. I cannot lookup healthcare information unless it is required for my job.
C.) True. I can access hard copy information at any time. I just cannot access electronic records at any time.
D.) a and c
6.) Scenario: A client sends you an excel worksheet via email. The worksheet contains PHI, and it is not encrypted. What should you do?
A.) Process the file normally. The client made a mistake, surely they will remember to encrypt the file next time.
B.) Immediately encrypt the file and save the encrypted file according to Biome standards. Delete all copies of the original file.
C.) I notify the client that they sent unencrypted PHI and remind the client to encrypt all future sends or upload the file through Biome's secure upload portal.
D.) Notify the Security Officer of the incident so they can see if any unauthorized users may have viewed the email.
D.) All the above
E.) b, c, and d
7.) Scenario: In assisting a customer, you are required to print out a spreadsheet that contains PII. Once you are finished with the physical document, what should you do with it?
A.) Crumple up the document and toss it in the trash.
B.) File the document away in a drawer. Make sure the document is out of reach of non-authorized personnel.
C.) Run the document through a paper shredder to prohibit any further use of the document.
D.) Any of the above
E.) None of the above - I am never allowed to create a physical document with PII.
8.) In working at Biome, what kind of confidential information will you be working with and must you protect?
A.) Personal Identifiable Information (PII)
B.) People's names addresses, phone numbers, and social security numbers
C.) Client performance and cost data
D.) Protected Health Information (PHI)
E.) All the above
9.) What items are considered Protected Health Information (PHI)?
A.) Medical Record Number
B.) Surgery Date
C.) A person's name and contact information.
D.) Medication lists and invoices for treatment of an illness
E.) All the above. All items can be used to identify an individual and their related health information.
10.) What items are considered Protected Health Information (PHI)?
A.) Treatment information without any personal identifiers.
B.) A truncated or encrypted Medical Record Numbers.
C.) Billing information without any personal identifiers
D.) All of the above
E.) None of the above. These items do not identify the individual.
{"name":"Biome HIPAA Training Quiz", "url":"https://www.quiz-maker.com/QPREVIEW","txt":"1.) A customer wants to send a file that contains PII or PHI. How do you receive the file?, 2.) What actions can you take to protect confidential information?, 3.) What workstation security safeguards do you have to follow?","img":"https://www.quiz-maker.com/3012/images/ogquiz.png"}
Powered by: Quiz Maker