2023 HIPAA Security Rule Question Title * 1. Even if automatic logoff is enabled, you should still log off or perform a screen lock if you know you are leaving your workstation unattended. True False OK Question Title * 2. Your supervisor or Security Officer may review your activity and access using audit controls. True False OK Question Title * 3. Lockout control measures help ensure that only authorized individuals are accessing EPHI and prevent an unauthorized person from guessing at a password. True False OK Question Title * 4. Unusual login events such as error messages, slow boot times, warnings, etc. should be reported immediately, as they can be an indicator of malware. True False OK Question Title * 5. HIPAA’s Security Rule requires that only managerial level employees be given keys or other means of access to the facility. True False OK Question Title * 6. Your organization is responsible for securing EPHI whentransmitting it to another provider or a business associate/vendor. True False OK Question Title * 7. In a phishing scheme, an attacker impersonates a trusted source, sends an email that appears to be from that source, and then tricks the user into divulging sensitive information or clicking links that contain malware. True False OK Question Title * 8. To prevent unauthorized access, HIPAA’s Security Rule requiresthat passwords be changed every 60 days. True False OK Question Title * 9. Outside media may be connected to your organization’s network, as long as your organization has a firewall in place. True False OK Question Title * 10. Mobile devices may not be used to store or transmit EPHI, because they are easily lost or stolen. True False OK DONE