ISC2 HCISPP HealthCare Information Security and Privacy Practitioner Online Training
ISC2 HCISPP Online Training
The questions for HCISPP were last updated at Jul 19,2025.
- Exam Code: HCISPP
- Exam Name: HealthCare Information Security and Privacy Practitioner
- Certification Provider: ISC2
- Latest update: Jul 19,2025
Which of the following are some common features designed to protect confidentiality of health information contained in patient medical records?
- A . Locks on medical records rooms
- B . Passwords to access computerized records
- C . Rules that prohibit employees from looking at records unless they have a need to know
- D . All of the above
The role of the government in the U.S. healthcare system is:
- A . Regulator
- B . Major financer
- C . Medicare and Medicaid reimbursement rate-setter
- D . All of the above
DRAG DROP
Place in order, from BEST (1) to WORST (4), the following methods to reduce the risk of data remanence on magnetic media.
The First Blue Cross plan was given to teachers at Baylor University allowing them 21 days of hospital care at six dollars a year.
- A . True
- B . False
A multiple payer system is more cumbersome than a single payer system for all of the following reasons except:
- A . There are numerous health plans, which is difficult for providers to handle
- B . Payments are not standardized across health plans
- C . Some healthcare services are covered for people in the north, but not in the south
- D . Government programs required extensive documentation proving services were provided before paying providers
Are there penalties under HIPPA?
- A . No penalties
- B . HIPPA calls for severe civil and criminal penalties for noncompliance, including:
— fines up to $25k for multiple violations of the same standard in a calendar year
— fines up to $250k and/or imprisonment up to 10 years for knowing misuse of individually identifiable health information. - C . HIPPA calls for severe civil and criminal penalties for noncompliance, includes:
— fines up to 50k for multiple violations of the same standard in a calendar year
— fines up to $500k and/or imprisonment up to 10 years for knowing misuse of individually identifiable health information - D . HIPPA calls for severe civil and criminal penalties for noncompliance, including:
— fines up to $100 for multiple violations of the same standard in a calendar year
— fines up to $750k and/or imprisonment up to 20 years for knowing misuse of individually identifiable health information
Handled the first bioterrorism attack in the mail. Also replaced Health Care Financing Administration.
- A . Joint Commission
- B . CMS
- C . HIPPA
Business Associates
- A . are entities that perform services that require the use of Protected Health Information on behalf of Covered Entities. One covered entity may be a business partner of another covered entity
- B . are entities that do not perform services that require the use of Protected Health Information on behalf of Covered Entities. One covered entity may be a business partner of another covered entity
- C . are entities that perform services that require the use of Encrypted Insurance Information on behalf of Covered Entities. One covered entity may be a business partner of another covered entity
- D . are entities that perform services that require the use of Protected Health Information on behalf of Covered Entities. One covered entity cannot be a business partner of another covered entity.
If a state or federal law or regulation grants the client greater access to their PHI, then it will preempt HIPAA.
- A . True
- B . False
You are approached by an individual who tells you that he is here to work on the computers and wants you to open a door for him or point the way to a workstation.
How do you respond to this request?
- A . Provide him with the information or access he needs.
- B . Ask him who at the facility has hired him and refer him to that person for assistance.
- C . Call the police.