HCISPP · Question #129
Part of Administrative Safeguards under HIPAA is Workforce Security measures. Which is NOT a key element of a Workforce Security Element?
The correct answer is A. Identification of barriers to client electronic Personal Health Information. Option A is correct because "Identification of barriers to client electronic PHI" is not a recognized element of HIPAA's Workforce Security standard - it doesn't appear in 45 CFR §164.308(a)(3) and conflates unrelated concepts. The three actual implementation specifications are…
Question
Part of Administrative Safeguards under HIPAA is Workforce Security measures. Which is NOT a key element of a Workforce Security Element?
Options
- AIdentification of barriers to client electronic Personal Health Information
- BClearance Procedures
- CTermination Procedures
- DAuthorization and Supervision
How the community answered
(52 responses)- A83% (43)
- B4% (2)
- C12% (6)
- D2% (1)
Explanation
Option A is correct because "Identification of barriers to client electronic PHI" is not a recognized element of HIPAA's Workforce Security standard - it doesn't appear in 45 CFR §164.308(a)(3) and conflates unrelated concepts. The three actual implementation specifications are Authorization and Supervision (D), which ensures employees work under appropriate oversight and are authorized to access ePHI; Workforce Clearance Procedures (B), which require vetting employees before granting ePHI access; and Termination Procedures (C), which ensure access is revoked when employment ends.
Memory tip: Think ACT - Authorization/Supervision, Clearance Procedures, Termination Procedures. If an answer choice sounds vague or doesn't directly control who gets access and when, it's likely the distractor.
Topics
Community Discussion
No community discussion yet for this question.