wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

BMET Course 109

Total questions: 91

Worksheet time: 1hrs 26mins

Name
Class
Date
1.

An additional federal regulation that applies to medical devices is

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

2.

A third party organization that processes insurance claims for providers

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

3.

Considered to be individually identifiable information relating to the treatment or diagnosis of a PT such as:

Diagnoses, Treatment info, Medical test results, Prescription information, Demographics

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

4.

PHI includes:

a)

Diagnoses

b)

Treatment info

c)

Medical test results

d)

Prescription info

e)

Demographic info

5.

At least how many PII identifiers are in a PT's EHR

a)

16

b)

17

c)

18

d)

19

e)

20

6.

Represents the potential for an attacker to violate security and cause harm to assets

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

7.

Weakness that may be exploited

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

8.

An act or control that reduces risk

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

9.

A method of bypassing normal authentication, securing remote access to a computer and data while attempting to remain undetected

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

10.

Software designed for malicious purposes such as causing damage to a system or creating a ____ in the system

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

11.

Piece of self-replicating software code that attaches itself to a program file or the sector of a disk

a)

Virus

b)

Trojan

c)

Spyware

12.

program in which a malicious or harmful code is contained inside an apparently harmless piece of data or program allowing it to gain control and do damage to the computer system

a)

Virus

b)

Trojan

c)

Spyware

13.

Type of malware (typ. hidden from the user) that can be installed on a computer with the purpose of collecting info about users without their knowledge

a)

Virus

b)

Trojan

c)

Spyware

14.

Typically Messaging protocol

a)

HL7

b)

DICOM

15.

Typically handles images

a)

HL7

b)

DICOM

16.

not a software app.

A large set of rules.

a)

HL7

b)

DICOM

17.

Non-profit organization formed by a group of radiologists and IT experts

a)

IHE - Integrating the Healthcare Enterprise

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

18.

HL7-DICOM Image Management Group which developed a standard approach to the interconnection between 2 protocols.

a.k.a. HL7-DICOM ISIS.

a)

IHE - Integrating the Healthcare Enterprise

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

19.

how a process is done

a)

IHE - Integrating the Healthcare Enterprise

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

Workflow

e)

Health care clearing house

20.

Addresses the security of ePHI


Supports the enforcement of HIPAA


est. reg. for the ability for a PT to find out who their ePHI has been released to.

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

21.

Basic, least skilled.

Employ their scripts during design of the system

a)

Script Kiddies

b)

Hacktivists

c)

Cyber-criminals

22.

Politically motivated attackers who attack systems belonging to organizations that are either opposed to their agenda.

a)

Script Kiddies

b)

Hacktivists

c)

Cyber-criminals

23.

dominant category of hackers


target organization in order to make money through extortion.

a)

Script Kiddies

b)

Hacktivists

c)

Cyber-criminals

24.

A program that duplicates itself from one directory, drive, computer or network to another through electronic communication

a)

Worm

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

25.

Social engineering to attack a large group of users

a)

Worm

b)

Vulnerability

c)

Mitigation

d)

Pharming

e)

Phishing

26.

cyber-attack which usually targets specific users via email

a)

Worm

b)

Vulnerability

c)

Mitigation

d)

Pharming

e)

Phishing

27.

Limited power and resources of medical equipment means that encryption will likely slow down device performance and reduce battery life.

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

28.

Most detrimental factor which causes cyber-security to be an issue in medical devices is the belief that cyber-security is only the responsibility of the IT department

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

29.

Health IT involves the ____ of information systems used by healthcare professionals

a)

design

b)

development

c)

creation

d)

Use/maintenance

e)

purchasing

30.

Health IT does NOT involve the ____ of information systems used by healthcare professionals

a)

design

b)

development

c)

creation

d)

Use/maintenance

e)

purchasing

31.

to perform precision medicine tailored to individuals pts you need

a)

analytics

b)

improved medical care

c)

rapidly advancing technologies

d)

government policies

32.

the emergence nad importance of IT in HC has been advanced by two factors:

a)

analytics

b)

improved medical care

c)

rapidly advancing technologies

d)

government policies

33.

the most important part of Health IT

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

34.

Apple Health app and Google Fit are examples of

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

PHR - Personal Health Record

35.

HIE - Health Information Exchange

a)

HITECH - Health Technology for Economic and Clinical Health Act

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

36.

provide a way for pts to communicate securely with their medical team, pay medical bills, download medical records

a)

Patient Portals

b)

Tele-medicine systems

37.

enable secure video conversations between patients and providers

a)

Patient Portals

b)

Tele-medicine systems

38.

developed to facilitate the exchange of the electronic healthcare data between various hospital info systems

a)

HL7

b)

DICOM

39.

Operates at layer 7 of the OSI model

a)

HL7

b)

DICOM

40.

typically have a .dcm extension and the data contains both PT data and images

a)

HL7

b)

DICOM

41.

DICOM is made up of ___ different sections ranging from image display to media storage

a)

16

b)

17

c)

18

d)

19

e)

20

42.

operates in the upper layers of the OSI 7

a)

HL7

b)

DICOM

43.

DICOM and HL7 provide established standards; however, issues with interoperability between differing systems/manufacturers.

a)

IHE - Integrating the Healthcare Enterprise

b)

HIPAA - Health Insurance Portability and Accountability Act

c)

PHI - Protected Health Information

d)

EHR - Electoric Health Record

e)

Health care clearing house

44.

Two primary entities that are required to be in compliance with HIPAA and HITECH

a)

Covered entities

b)

improved medical care

c)

rapidly advancing technologies

d)

Business Associates

45.

health care clearing houses fall under

a)

Covered entities

b)

improved medical care

c)

rapidly advancing technologies

d)

Business Associates

46.

Medical Device Compliance should require

a)

Logs that track who, when, why

b)

Location of a medical device

c)

Changing of location of medical device

d)

User Access Controls

e)

Facility access controls such as locking doors

47.

HIPAA medical device compliance is a shared responsibility between the:

a)

HC Facility

b)

Medical device manufacturer

c)

Maintenance department

d)

Doctors

48.

Organizations involved in managing and improving cyber-security

a)

FDA

b)

Department of Homeland Security

c)

Kroger's

d)

Facebook

49.

A method of bypassing normal authentication, securing remote access to a computer and data while attempting to remain undetected

a)

Threat

b)

Vulnerability

c)

Mitigation

d)

Backdoor

e)

Malware

50.

WPA2 Enterprise is the ____ authentication available

a)

Strongest

b)

Weakest

c)

Prettiest

51.

If you have older medical equipment, it is smart to create a separate ____.

a)

VLAN

b)

WAN

c)

LAN

d)

WLAN

e)

VWAN

52.

3 forms of authentication are

a)

something you have

b)

something you know

c)

something you are

d)

!QAZ2wsx

53.

Ensure Anti-virus is enables on each device

if no anti-virus, perform an anti-virus scan each time

a)

Gen Prin of Device and Network Hardening

b)

Equipment Specific Guidelines

c)

Training

54.

Make each device as tamper resistant as possible

a)

Gen Prin of Device and Network Hardening

b)

Equipment Specific Guidelines

c)

Training

55.

Physicians, BMETS, IT Dept, and Cybersecurity

a)

Gen Prin of Device and Network Hardening

b)

Equipment Specific Guidelines

c)

Training

56.

Unique identifier for a DICOM device

The end point of a DICOM

Single device can have multiple

Typically set up during installation of a device

a)

Application entity

b)

Study

c)

Worklist

d)

Hanging protocol

e)

Teleradiology

57.

Current or previous exam being viewed

May consist of 2 or 3 images OR an MRI

a)

Application entity

b)

Study

c)

Worklist

d)

Hanging protocol

e)

Teleradiology

58.

Provide a list of task to be performed such as interpretation of an image or performing an x-ray on a PT.

Manages the status of a task so multiple users can acces.

Indicates when an image is being read and locks the study.

a)

Application entity

b)

Study

c)

Worklist

d)

Hanging protocol

e)

Teleradiology

59.

Departments using PACS technology include

a)

Nuclear imaging

b)

Cardiology

c)

Pathology

d)

Oncology

e)

Dermatology

60.

Defines how a set of image (how many / how displayed) will be displayed on a monitor for a radiologist.

a)

Application entity

b)

Study

c)

Worklist

d)

Hanging protocol

e)

Tele-radiology

61.

Radiologist interpreting a medical image while not physically present at the location

a)

Application entity

b)

Study

c)

Worklist

d)

Hanging protocol

e)

Tele-radiology

62.

A PAC workstation will frequently have complex software such as 3D animation or computer-aided diagnosis (CAD), which allows radiologists and techs to

a)

better analyze the images

b)

communicate with other computers

63.

contains text data describing the image and PT

a)

DICOM header

b)

DICOM pixel data

64.

The image itself

a)

DICOM header

b)

DICOM pixel data

65.

The number of bits in each pixel is referred to as ___ _____

(a)  

66.

DICOM files can also be converted to other formats such as

a)

JPEG

b)

TIFF

c)

GIF

d)

PDF

e)

PNG

67.

PACS 4 major components

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

68.

Digital x-ray, Computed tomography, MRI, ultrasound

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

69.

Digital x-ray, Computed tomography, MRI, ultrasound

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

70.

needs to be secure to ensure PT privacy and protect the info being exchanged

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

71.

Needs to be fast allowing the timely movement of images. (Gigabit Ethernet is preferred)

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

72.

The most interactive part of PACS.

Monitors are specialized for high image quality.

FDA specifies that all mammography images must be viewed on a 5MP monitor

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

73.

FDA specifies that all mammography images must be viewed on a ___ monitor

a)

2048x2560 - 5MP

b)

1600x1200 - 2MP

c)

1280x1024 - 1MP

d)

2048x1536 - 3MP

74.

Workstations primary usage:

a)

reading stations for biologists (highest quality equipment)

b)

review stations for referring physicians

c)

Quality control for techs

d)

Image management

75.

frequently cloud-based OR hybrid-cloud

a)

Hardware

b)

Network for distribution

c)

workstation

d)

PACS archive/server

76.

PACS System architectures

a)

Client/server-based system

b)

Distributed system

c)

Web based

77.

Centrally located

a)

Client/server-based system

b)

Distributed system

c)

Web based

78.

Stand alone system

a)

Client/server-based system

b)

Distributed system

c)

Web based

79.

both the images and application software for the client display are held centrally

a)

Client/server-based system

b)

Distributed system

c)

Web based

80.

Device invoking the operation.

Sets up the association

a)

SCU - Service Class User

b)

SCP - Service Class Provider

81.

PACS server is a ____ when it provides storage for images

a)

SCU - Service Class User

b)

SCP - Service Class Provider

82.

Allows a device which created images to check that the images have been safely stored by a server (SCP) before deleting the images from its own cache

a)

Store

b)

Query

c)

Print

d)

Interchange media

e)

Storage commitment

83.

Measured in candela per square meter (cd/m^2)

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

84.

Rates the degree of difference of a monitor's ability to produce bright whites and dark blacks

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

85.

The time it takes for the LC inside a screen panel to respond to applied current

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

86.

Commercial grade is limited to 256 shades

Medical grade can offer up to 4096

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

87.

Commercial grade is typically 300:1

Medical grade 1000:1

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

88.

Differences are important when using a monitor in an area with bright ambient light (ER or ICU)

a)

Luminance

b)

Contrast ratio

c)

Response rate

d)

Gray scale

e)

Commercial grade monitor

89.

Light output of a monitor varies with the temperature which must stabilize for about 30-60 minutes.

a)

15-30 minutes

b)

30-60 minutes

c)

45-60 minutes

d)

60-120 minutes

90.

Grayscale Standard Display Function (GSDF) states that the luminance of a display is such that an observer's perception of an image contrast is ____ throughout the pixel value range of a displayed image

a)

consistent

b)

inconsistent

c)

irregular

d)

close

91.

photometer is:

a)

Used to measure photos

b)

used to measure the intensity of light

c)

used to measure pho's toes

d)

used to measure photosynthesis