DEH 1005 Week 3 Flashcards

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/47

flashcard set

Earn XP

Description and Tags

HIPAA and FERPA

Last updated 4:44 AM on 6/22/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

48 Terms

1
New cards

What does HIPAA stand for?

Health Insurance Portability and Accountability Act

2
New cards

What does HIPAA do?

Protects patient privacy, secures health information, and improves the efficiency of healthcare delivery

3
New cards

What are patient rights under HIPAA?

  • Access to their health records

  • Right to request corrections to medical records

  • Right to obtain an accounting of disclosures of their private health information

4
New cards

What are the core purposes of HIPAA?

  • Protect patient privacy

  • Secure health information

  • Improve the efficiency of healthcare delivery

5
New cards

What are EHRs?

Electronic health records

6
New cards

What are the requirements for EHRs regarding HIPAA compliance?

They must comply with HIPAA regulations to ensure the protection of ePHI

7
New cards

What are the benefits of EHRs?

Improved patient care, efficiency, and accuracy in health records management (Ex: speedy delivery of information both to patients and between departments. Includes X-rays being sent to ER etc.)

8
New cards

What does PHI stand for?

Protected health information

9
New cards

What qualifies as PHI?

Any information about health status, provision of health care, or payment for health care that can be linked to an individual

10
New cards

What are some examples of PHI?

Names, addresses, birth dates, social security numbers, medical records, any other identifying information

11
New cards

What does ePHI stand for?

Electronic protected health information

12
New cards

What department is responsible for enforcing HIPAA?

Office for Civil Rights (OCR) which is within the Department of Health and Human Services (HHR)

13
New cards

What are covered entitites?

Primary organizations that create, receive, or transmit PHI

14
New cards

What are examples of covered entities?

Health plans, healthcare providers, and clearinghouses

15
New cards

What are business associates?

Third-party vendor or contractors that perform services on covered entities’ behalf which requires access to PHI

16
New cards

What types of security safeguards are included in HIPAA?

Administrative, physical, and technical

17
New cards

Describe administrative safeguards

Policies and procedures to manage the selection, development, implementation, and maintenance of security measures

18
New cards

Describe physical safeguards

Physical measures to protect electronic systems and related buildings/equipment from threats

19
New cards

What is an example of a physical safeguard?

A locked cabinet with computers in it

20
New cards

Describe technical safeguards

Technology and policies meant to protect ePHI and control access to it

21
New cards

What are the various consequences for HIPAA violations?

  • Fines from $100 - $50,000 per violation

  • Criminal charges (possible jail time for severe violations)

  • Loss of trust and business impact

22
New cards

What is the maximum annual penalty for HIPAA violations?

$1.5 million

23
New cards

What aspects of HIPAA must dental hygiene professionals understand?

  • Patient records and charting

  • Billing and insurance documentation

  • Electronic Health Records (EHRs)

  • Release of patient information forms

24
New cards

What does FERPA stand for?

Family Educational Rights and Privacy Act

25
New cards

What is required in order for educational records to be shared?

Student consent

26
New cards

What does PII stand for?

Personally Identifiable Information

27
New cards

What parameters surround the sharing of directory information?

  • Schools must tell parents and eligible students about directory information and allow them a reasonable amount of time to request that the school not disclose the directory information

  • Schools must notify parents and eligible students annually of their rights under FERPA

28
New cards

What constitutes an educational record?

Any record that contains information directly relating to a student and is maintained by an educational institution or a party acting on its’ behalf

29
New cards

What are a student’s rights under FERPA?

  • Written permission required to release any information from a student’s educational record

  • Students have a right to access records, seek to correct them, and consent to their disclosure

30
New cards

When can educational records be released without the student’s consent?

  • When the student is a dependent student (they have been claimed as a dependent on a tax return)

  • Dual enrolled students

31
New cards

What is directory information?

Basic, non-sensitive data that a school can release without consent

32
New cards

What are examples of directory information?

Student’s name, address, telephone number, date and place of birth, honors and awards, and dates of attendance

33
New cards

What is protected information?

Highly sensitive data that FERPA strictly forbids institutions from sharing without explicit, written student consent

34
New cards

What are examples of protected information?

Grades, GPA, class schedule, SSN, ID number, disciplinary records, billing/financial records

35
New cards

Define HIPAA

Health Insurance Portability and Accountability Act - protects patient health information

36
New cards

Define FERPA

Family Educational Rights and Privacy Act - protects student educational records

37
New cards

Define Personally Identifiable Information (PII)

Information that can be used to identify a specific individual

38
New cards

Define Protected Health Information (PHI)

Any health information that can be linked to a specific patient

39
New cards

What does HIPAA govern?

Health/medical information

40
New cards

What does FERPA govern?

Educational records

41
New cards

What is HIPAA administered by?

Department of Health & Human Services (HHS)

42
New cards

What is FERPA administered by?

Department of Education

43
New cards

What does HIPAA apply to?

Healthcare providers, insurers

44
New cards

What does FERPA apply to?

Schools and educational institutions

45
New cards

Who does HIPAA protect?

Patients

46
New cards

Who does FERPA protect?

Students

47
New cards

What is consent required for in HIPAA?

Release of PHI

48
New cards

What is consent required for in FERPA?

Release of educational records