An unhandled error has occurred. Reload X
View official blueprint on Cert Atlas

CHPS - Certified in Healthcare Privacy and Security Practice Test

72 questions available

The Certified in Healthcare Privacy and Security (CHPS) credential, offered by the American Health Information Management Association (AHIMA), is the premier certification for professionals responsible for managing and protecting patient health information. This certification validates comprehensive expertise in the complex regulatory landscape governing healthcare data, with a dual focus on the HIPAA Privacy and Security Rules. CHPS-certified professionals demonstrate mastery in developing, implementing, and managing robust compliance programs; conducting thorough risk analyses; and implementing the administrative, physical, and technical safeguards required to secure protected health information (PHI). Earning the CHPS signifies to employers, colleagues, and regulators that an individual possesses the advanced, practical knowledge necessary to navigate the intersection of healthcare operations, information technology, and federal law. It is a critical credential for those in roles such as privacy officers, security officers, compliance managers, and health information management directors, ensuring they can effectively mitigate risk, respond to incidents, and foster a culture of compliance within their organizations.

Certification exam
130 Exam questions
3 hours 30 minutes Time Limit
Career Opportunities & Salary
Entry $52,521 - $74,521
Mid-Career $74,521 - $104,521
Senior $102,521 - $144,521
stable market
Why This Certification Opens Doors

In an era of escalating cyber threats, stringent regulatory enforcement, and growing patient awareness of data rights, the CHPS credential is a powerful differentiator for career advancement. It provides immediate industry recognition as a subject matter expert, often serving as a prerequisite or preferred qualification for senior privacy and security roles within healthcare organizations, consulting firms, and health IT vendors. Holding the CHPS demonstrates a commitment to the highest standards of professional competence, directly enhancing credibility with executive leadership and regulatory bodies. It signifies not just theoretical knowledge, but the applied ability to protect patient trust and organizational integrity, making certified individuals invaluable assets in safeguarding an organization's most sensitive assets and its reputation.

Required

Experience RHIT or RHIA credential OR graduate of an accredited HIM program OR 3 years of healthcare privacy/security experience
Exam Blueprint
01Privacy
02Regulatory Compliance
03Security
Exam Details CHPS | $329 USD | 3 hours 30 minutes
Exam Code CHPS
Vendor AHIMA
Exam Cost $329 USD
Passing Score 70
Time Limit 3 hours 30 minutes
Exam questions 130
Question Types Multiple Choice, Medical Record Coding (CCS only)
Retake Policy 60-day waiting period between attempts. Full exam fee required for retake.
Exam Format Linear (computer-based)
Online Proctoring Available
Available In
English
Retake Policy 60-day waiting period between attempts
Study Resources
AHIMA Exam PrepOfficialStudy Guide
AHIMAFree
Official study guides published by AHIMA Press for each credential
View
Frequently Asked Questions

What are the primary experience and education requirements to sit for the CHPS exam?

AHIMA requires candidates to hold at least an associate degree and have two years of experience in a healthcare privacy or security role. Alternatively, candidates with a relevant credential (e.g., RHIA, RHIT, CISSP, CIPP) may qualify with less experience. Specific requirements are detailed on AHIMA's website and should be reviewed prior to application, as they ensure candidates possess the foundational knowledge necessary for exam success.

How does the CHPS differ from other healthcare compliance certifications like the HCISPP?

While both are valuable, the CHPS is specifically and deeply focused on the U.S. healthcare regulatory environment, particularly HIPAA. It is administered by AHIMA, an organization rooted in health information management, giving it a strong operational healthcare context. The HCISPP, from (ISC)², has a broader information security foundation applied to healthcare. The CHPS is often seen as the definitive credential for the healthcare privacy officer role, whereas HCISPP may appeal more to those with a core IT security background working in healthcare.

What is the typical career path for a CHPS credential holder?

CHPS professionals commonly advance into leadership positions such as Chief Privacy Officer (CPO), Chief Information Security Officer (CISO) in healthcare settings, Director of Compliance, Privacy/Security Manager, or Consultant. The credential is highly regarded for roles that interface with legal, IT, clinical, and administrative departments to develop policy, conduct training, manage breach response, and serve as the organization's designated expert on HIPAA matters.

What is the core focus of the Risk Analysis domain within the CHPS blueprint?

The Risk Analysis domain is not merely about performing a one-time assessment. CHPS candidates must understand how to conduct a thorough, ongoing, organization-wide risk analysis as required by the HIPAA Security Rule. This includes identifying all sources of PHI, assessing threats and vulnerabilities, determining the likelihood and impact of potential risks, implementing appropriate measures to mitigate those risks, and documenting the entire process as part of a continuous risk management program.

How important is understanding the interplay between the Privacy Rule and the Security Rule for the exam?

It is absolutely critical. The CHPS certification's unique value is in certifying competency in both privacy *and* security. The exam will test your ability to see how these rules overlap and interact. For example, a security incident (a Security Rule concern) becomes a reportable breach based on a risk assessment of compromise that involves definitions and standards from the Privacy Rule. A proficient CHPS professional seamlessly integrates requirements from both rules into a unified compliance strategy.

Reviews & Ratings
No reviews yet

Be the first to review this exam and help other learners!


Share Your Experience