nerdexam
CompTIA

HIT-001 · Question #390

You know that HIPAA requires you to have a contingency plan in the event of an emergency or failure of your in-house system that contains electronic protected health information (EPHI). You have an…

The correct answer is D. Establish a Service Level Agreement which defines the rate, scope, and minimum standards to be. See the full explanation below for the reasoning.

Question

You know that HIPAA requires you to have a contingency plan in the event of an emergency or failure of your in-house system that contains electronic protected health information (EPHI). You have an information technology company that will host your electronic medical records both for backup and for cloud access. A best practice to safeguard against your medical office losing its EPHI for a damaging amount of time is.

Options

  • AEnsure 24-hour access for the Privacy Officer to the IT company's servers.
  • BEstablish a contractual clause in the BAA that includes monthly backups of EPHI and monthly reports
  • CCreate a contingency policy that lists the IT Company's backup.
  • DEstablish a Service Level Agreement which defines the rate, scope, and minimum standards to be

How the community answered

(16 responses)
  • A
    13% (2)
  • B
    6% (1)
  • D
    81% (13)

Community Discussion

No community discussion yet for this question.

Full HIT-001 Practice