Medium1 markMultiple Choice
Area II: SecurityHIPAARegulationsArea II

CPA · Question 31 · Area II: Security

Under the HIPAA Security Rule, which of the following is a 'Covered Entity'?

Answer options:

A.

A patient using a health app.

B.

A health insurance clearinghouse.

C.

An employer collecting sick notes.

D.

A gym tracking member workouts.

How to approach this question

Recall the 3 types of Covered Entities: Providers, Plans, Clearinghouses.

Full Answer

B.A health insurance clearinghouse.✓ Correct
HIPAA Covered Entities include Health Plans, Health Care Clearinghouses, and Health Care Providers who transmit health information in electronic form.

Common mistakes

Thinking all health data (like Fitbits or employer records) falls under HIPAA.

Practice the full CPA ISC Practice Exam 5

82 questions · hints · full answers · grading

More questions from this exam