what applies to any organization that handles health information? course hero

by Dr. Eva Brekke Sr. 5 min read

What is the purpose of the Health Information Protection Act?

1. To individuals (or their personal representatives) specifically when they request access to, or an accounting of disclosures of, their protected health information 2. To the Department of Health and Human Services (DHHS) when it is undertaking a compliance investigation, a review, or an enforcement action

Why would a healthcare organization be conducting an audit?

The healthcare organization is conducting an audit to ensure that they are meeting privacy and security standards. They must be conducting a: A patient signed an authorization to release information to a physician but decided not to go see that physician. Educate the patient on the appropriate process.

What should be included in privacy and security training documentation?

Recommend a method of proving compliance for the physical safeguard device and media controls. Critique the following statement: Privacy and security training documentation only includes handouts and other course materials. - The documentation should include handouts and signing sheets only.