← Back to CBT Library

dha family

DHA HIPAA and Privacy Act training answers: PHI use and disclosure, the HIPAA Privacy/Security/Breach rules, and Privacy Act requirements for MHS personnel.

31 questions and answers — updated 2025/202631 of 31 verified against the official source

Studying for this with your unit? Send it to them.

🃏 Flashcards
01

Which of the following statements about the HIPAA Security Rule are true?

02

A covered entity (CE) must have an established complaint process.

03

The e-Government Act promotes the use of electronic government services by the public and improves the use of information technology in the government.

04

When must a breach be reported to the U.S. Computer Emergency Readiness Team?

05

Which of the following statements about the Privacy Act are true?

06

What of the following are categories for punishing violations of federal health care laws?

07

Which of the following are common causes of breaches?

08

Which of the following are fundamental objectives of information security?

09

If an individual believes that a DoD covered entity (CE) is not complying with HIPAA, he or she may file a complaint with the:

10

Technical safeguards are:

11

A Privacy Impact Assessment (PIA) is an analysis of how information is handled:

12

A breach as defined by the DoD is broader than a HIPAA breach (or breach defined by HHS).

13

Which of the following are breach prevention best practices?

14

An incidental use or disclosure is not a violation of the HIPAA Privacy Rule if the covered entity (CE) has:

15

Under the Privacy Act, individuals have the right to request amendments of their records contained in a system of records.

16

Which HHS Office is charged with protecting an individual patient's health information privacy and security through the enforcement of HIPAA?

17

Physical safeguards are:

18

Which of the following would be considered PHI?

19

The minimum necessary standard:

20

Select all that apply: In which of the following circumstances must an individual be given the opportunity to agree or object to the use and disclosure of their PHI?

21

Under HIPAA, a covered entity (CE) is defined as:

22

True or False? "Use" is defined under HIPAA as the release of information containing PHI outside of the covered entity (CE).

23

The HIPAA Security Rule applies to which of the following:

24

Administrative safeguards are:

25

Which of the following are examples of personally identifiable information (PII)?

26

The HIPAA Privacy Rule applies to which of the following?

27

A Systems of Records Notice (SORN) serves as a notice to the public about a system of records and must:

28

HIPAA provides individuals with the right to request an accounting of disclosures of their PHI.

29

Select all that apply: The HIPAA Privacy Rule permits use or disclosure of a patient's PHI in accordance with an individual's authorization that:

30

Which of the following is NOT electronic PHI (ePHI)?

31

Which of the following are true statements about limited data sets?

Know questions we're missing?

Submit your own Q&A pairs. AI reviews them for quality, then they go live for everyone.

Study these as flashcards

Load all 31 questions into a free study set — flashcards, a practice test, and spaced repetition. No account.

Works on any PDF, doc or web page too — not just military training.

Veteran? vetaid.ai — free VA benefits help.