MemorialCare Medical Centers Excellence in Health Care
MemorialCare Medical Centers, Long Beach Memorial, Miller Children's Hospital, Orange Coast Memorial, Saddleback Memorial - Laguna Hills & San Clemente
Hipaa Privacy and Security Quiz
MemorialCare HIPAA Privacy & Security Quiz


1. If a patient requests to have their bill faxed to them at work, I would:

a. fax it right over without any questions
b. ask for their date of birth, address, phone number or another piece of information that would help me to verify their identity (like last four digits of their SS#)
c. document the request and information provided by the caller
d. both B & C

2. If a patient's husband calls for the results of his wife's pregnancy test and he provides to you over the phone: her name, date of birth, address and phone number, you can tell him the results of her test.

a. True
b. False

3. If you receive a written request to release a patient's health information, you should refer the request to Medical Records.

a. True
b. False

4. Releasing HIV or Mental Health Information requires an additional, content specific, signed authorization by the patient.

a. True
b. False

5. You accidentally disclosed the protected health information of a patient to the wrong person, but because the patient does not know this happened, you do not have to account for the disclosure.

a. True
b. False

6. When sending patient information by fax, you should:

a. verify the number you are faxing to
b. send it without a cover sheet because they know it is coming
c. verify the identity of the recipient and validate the purpose of the request
d. both A & C

7. When disposing of documents that contain patient or confidential information, you should place the items:

a. in the "blue" recycle containers
b. in the garbage can
c. in the "grey" secured/confidential bins
d. none of the above, we keep patient information forever

8. It is completely acceptable to discuss a patient's protected health information with family or friends without first asking for the patient's permission.

a. True
b. False

9. When approached by law enforcement requesting patient or proprietary information, you should:

a. hand it over, because law enforcement is entitled to everything
b. indicate that you need the request in writing and then you can give them a copy of what they need
c. notify your department supervisor or activate your chain of command before releasing anything

10. The mother of a minor child has told you that you are not to release any information to the child's father because she has custody. You...

a. honor her request
b. decide you are not going to release information to the mother or father and call Child Protective Services
c. you release information to the father
d. inform her that unless you have a document from the court to support her request, you will release information to the child's father if he requests it

11. Jane/John Doe has made a request to, "opt out of the hospital's directory," but the request came after they were admitted, so you don't need to honor the request.

a. True
b. False

12. When am I allowed to share my password with a co-worker?

a. If they are a new employee and have not been provided access to a system they need to do their job (ex. patient documentation).
b. They forgot their password and we have the same access, so he/she can use mine.
c. According to MHS policy, sharing my login and password is not permitted.

13. Please choose the correct statement below:

a. As an employee, I am permitted to access any patient's record for whatever I want.
b. As an employee, I can use any MHS system to access my own health information.
c. As an employee, I am permitted to access a patient's health information if my job duties/responsibilities require me to do so.
d. I cannot be personally responsible for violations, only MHS can be assessed fines/penalties.

14. My "non-MemorialCare" email account (hotmail, gmail, yahoo, etc.) automatically encrypts information that I send externally (outside the organization) as long as I am logged onto the MemorialCare and/or facility network.

a. True
b. False

15. Confidential information in an electronic format is harder to access than confidential information that is printed; therefore, I do not need to worry about how I dispose of it after use.

a. True
b. False

16. "Technical Safeguards" would include:

a. an automatic log-off
b. my unique login and password
c. a screen saver
d. all of the above

17. Downloading software from the Internet is against MHS policy.

a. True
b. False

18. Which of the following are true when using PDA's, Flash Drives and/or Laptops?

a. There is a business need and all the data must be encrypted before copying of any proprietary/confidential or patient information.
b. Before using a portable storage device, I should discuss its use with my supervisor and the MHS Help Desk.
c. MHS may use Technical Safeguards to monitor, block, restrict, or force encryption on any removable media or storage device used on a MHS PC or other technology resource.
d. All of the above

19. Photography inside the facility or of the organization is:

a. allowed when there is a business need
b. allowed when I have received approval by my supervisor
c. is never allowed per policy
d. Both A & B

20. If I suspect that anyone (employee or other) is taking inappropriate pictures, I need to immediately report it to my supervisor.

a. True
b. False


Acknowledgment of MHS Privacy & Security Training

I acknowledge that I have been provided education materials and completed the training course offered by MemorialCare. I agree to abide by MemorialCare’s policies and procedures governing the protection of PHI and understand that failure to do so may be a violation of state and/or federal law any may result in potential fines/penalties to me personally as well as impact my working relationship with the organization.


First Name : 
Last Name : 
Department : 
Supervisor : 
Campus / Facility Relationship Additional Info Entry
Long Beach/MCH
Orange Coast
Saddleback - LH
Saddleback - SC
MemorialCare, MHS or Other
Independent Contractor
Physician
Registry Personnel
Student
Traveling RN
Temp Staff
Volunteer
Other

 
 
MemorialCare Health System is a not-for-profit integrated-delivery system which includes Long Beach Memorial Medical Center, Miller Children’s Hospital Long Beach, Orange Coast Memorial Medical Center and Saddleback Memorial Medical Center in Laguna Hills and San Clemente. Our community-based hospitals are located in Southern California in both Los Angeles County and Orange County. Copyright © 1999 - 2009, Memorial Health Services. All rights reserved.