Back to Frameworks

UK Modern Slavery Act 2015

United Kingdom
v2015
26 domains
41 controls

The UK Modern Slavery Act 2015 is landmark legislation addressing slavery, servitude, forced labour, and human trafficking. Part 6, Section 54 (Transparency in Supply Chains) requires commercial organisations with annual turnover of GBP 36 million or more to publish an annual modern slavery statement describing steps taken to ensure slavery and trafficking are not occurring in their business or supply chains. The Home Office maintains a Modern Slavery Statement Registry. The Act also established the Independent Anti-Slavery Commissioner.

Unverified

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (26)

Accountability

1 controls
Controls in the Accountability domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-10Single Named Person Accountability

Adjacent Legislation

1 controls
Controls in the Adjacent Legislation domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-INT-20Interaction with Adjacent Legislation

Anti-Slavery Commissioner and Governance

4 controls
Controls in the Anti-Slavery Commissioner and Governance domain of UK Modern Slavery Act 20154 controls
CodeTitle
s.40Independent Anti-Slavery Commissioner
s.41Commissioner's Functions
s.42Commissioner's Annual Report
s.43Duty to Cooperate with Commissioner

Continuous Improvement

1 controls
Controls in the Continuous Improvement domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-CCO-19Continuous Improvement and Year-On-Year Progress

Contractual Controls

1 controls
Controls in the Contractual Controls domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-CON-16Contractual Cascade to Suppliers

Enforcement Liaison

1 controls
Controls in the Enforcement Liaison domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-LIA-14Liaison with Law Enforcement and Independent Anti-Slavery Commissioner

Enforcement and Penalties

0 controls

CRTC enforcement, private right of action, and penalties

Governance

1 controls
Controls in the Governance domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-3Board Approval and Director Sign-Off

Group Structure

1 controls
Controls in the Group Structure domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-SUB-15Group Statement and Subsidiary Coverage

Offences

4 controls
Controls in the Offences domain of UK Modern Slavery Act 20154 controls
CodeTitle
s.1Slavery, Servitude and Forced Labour
s.2Establishment of the Building Safety Regulator
s.3Regulator Objectives
s.4Grounds for Processing Personal Data

Prevention and Risk Orders

4 controls
Controls in the Prevention and Risk Orders domain of UK Modern Slavery Act 20154 controls
CodeTitle
s.14Retention and Restriction of Records
s.15Further Processing to be Compatible with Purpose of Collection
s.23Access to Personal Information
s.30Alternate Dispute Resolution and Voluntary Undertaking

Public Sector

1 controls
Controls in the Public Sector domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-PUB-18Public Sector and Section 54 Plus Considerations

Recruitment

1 controls
Controls in the Recruitment domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-REC-13Responsible Recruitment Practices

Registry Submission

1 controls
Controls in the Registry Submission domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-REG-11Government Statement Registry Submission

Remediation

1 controls
Controls in the Remediation domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-REM-17Remediation Approach

Reporting Area 1

1 controls
Controls in the Reporting Area 1 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-4Organisation Structure, Business and Supply Chains Reporting Area

Reporting Area 2

1 controls
Controls in the Reporting Area 2 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-5Policies Reporting Area

Reporting Area 3

1 controls
Controls in the Reporting Area 3 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-6Due Diligence Processes Reporting Area

Reporting Area 4

1 controls
Controls in the Reporting Area 4 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-7Risk Assessment and Management Reporting Area

Reporting Area 5

1 controls
Controls in the Reporting Area 5 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-8Effectiveness Measurement Reporting Area

Reporting Area 6

1 controls
Controls in the Reporting Area 6 domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-9Training Reporting Area

Scoping

1 controls
Controls in the Scoping domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-1Turnover Threshold Assessment

Statement Publication

1 controls
Controls in the Statement Publication domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-S54-2Annual Statement Publication

Transparency in Supply Chains

4 controls
Controls in the Transparency in Supply Chains domain of UK Modern Slavery Act 20154 controls
CodeTitle
s.54(1)Annual Slavery and Human Trafficking Statement
s.54(4)Board Approval and Signature
s.54(5)Statement Content Requirements
s.54(7)Publication on Website

Victim Protection and Support

5 controls
Controls in the Victim Protection and Support domain of UK Modern Slavery Act 20155 controls
CodeTitle
s.45Defence for Slavery or Trafficking Victims
s.46Special Measures for Witnesses
s.48Child Trafficking Advocates
s.49Guidance on Identifying and Supporting Victims
s.50Duty to Notify

Worker Voice

1 controls
Controls in the Worker Voice domain of UK Modern Slavery Act 20151 controls
CodeTitle
MSA-WRK-12Worker Voice and Grievance Mechanisms

Your Compliance Coverage

If you comply with UK Modern Slavery Act 2015, you already cover:

Maps to 139 other frameworks

41 total controls
SASB Standards (ISSB Integrated)
5 source controls mapped|4 target controls covered
12%
SASB Standards
5 source controls mapped|4 target controls covered
12%
UNESCO Recommendation on the Ethics of AI
4 source controls mapped|3 target controls covered
10%
FedRAMP High
4 source controls mapped|2 target controls covered
10%
NIST SP 800-53 Revision 5.1 HIGH
4 source controls mapped|2 target controls covered
10%
FedRAMP Moderate
4 source controls mapped|2 target controls covered
10%
NIST SP 800-53 Rev 5 MODERATE
4 source controls mapped|2 target controls covered
10%
NIST SP 800-53 Rev 5 LOW
4 source controls mapped|2 target controls covered
10%
Voluntary Principles on Security and Human Rights (VPs)
4 source controls mapped|2 target controls covered
10%
ISO 26000:2010
4 source controls mapped|4 target controls covered
10%
South Africa Promotion of Access to Information Act (PAIA)
3 source controls mapped|1 target controls covered
7%
Sweden Data Protection Act (Dataskyddslag, 2018:218)
3 source controls mapped|1 target controls covered
7%
Illinois Biometric Information Privacy Act (BIPA)
3 source controls mapped|2 target controls covered
7%
ISO 20400:2017 - Sustainable Procurement
3 source controls mapped|2 target controls covered
7%
UN Guiding Principles on Business and Human Rights (UNGPs)
3 source controls mapped|3 target controls covered
7%
UAE Virtual Asset Regulatory Authority (VARA) Regulations
2 source controls mapped|4 target controls covered
5%
NIST SP 1800-32
2 source controls mapped|3 target controls covered
5%
5%
IEC 62443
2 source controls mapped|3 target controls covered
5%
UK Online Safety Act 2023
2 source controls mapped|6 target controls covered
5%
TSA Pipeline Security
2 source controls mapped|3 target controls covered
5%
API 1164
2 source controls mapped|3 target controls covered
5%
ISO 27019
2 source controls mapped|3 target controls covered
5%
Barbados Data Protection Act 2019
2 source controls mapped|2 target controls covered
5%
NFPA 1600 - Standard on Continuity, Emergency, and Crisis Management
2 source controls mapped|1 target controls covered
5%
ISO 22000
2 source controls mapped|1 target controls covered
5%
ISO 45001
2 source controls mapped|1 target controls covered
5%
UK Data Protection Act 2018
1 source controls mapped|1 target controls covered
2%
Rwanda DPL
1 source controls mapped|1 target controls covered
2%
SEC Climate Disclosure Rule
1 source controls mapped|1 target controls covered
2%
South Korea ISMS-P
1 source controls mapped|2 target controls covered
2%
Annex 11 to EU GMP - Computerised Systems
1 source controls mapped|1 target controls covered
2%
SSAE 18 - Attestation Standards (SOC Reporting)
1 source controls mapped|3 target controls covered
2%
Sri Lanka Personal Data Protection Act (No. 9 of 2022)
1 source controls mapped|1 target controls covered
2%
US Gramm-Leach-Bliley Act (GLBA) - Higher Education Safeguards Rule
1 source controls mapped|2 target controls covered
2%
Saudi NCA ECC
1 source controls mapped|3 target controls covered
2%
ISO 27005
1 source controls mapped|3 target controls covered
2%
Peru DPL
1 source controls mapped|1 target controls covered
2%
PCAOB AS 2201 - Audit of Internal Control Over Financial Reporting (ICFR)
1 source controls mapped|2 target controls covered
2%
NIST Cybersecurity Framework 2.0
1 source controls mapped|2 target controls covered
2%
Texas Data Privacy Act
1 source controls mapped|1 target controls covered
2%
ISO/IEC 29134:2023
1 source controls mapped|3 target controls covered
2%
ISO/IEC 27014:2020
1 source controls mapped|2 target controls covered
2%
ISO 31000
1 source controls mapped|3 target controls covered
2%
ISO/IEC 23894:2023
1 source controls mapped|3 target controls covered
2%
US Consumer Product Safety Commission (CPSC) - Connected Product Safety
1 source controls mapped|1 target controls covered
2%
Own Risk and Solvency Assessment (ORSA) - NAIC Model Act
1 source controls mapped|3 target controls covered
2%
AML/CTF Act 2006 (Australia)
1 source controls mapped|1 target controls covered
2%
Utah Consumer Privacy Act
1 source controls mapped|1 target controls covered
2%
TSA Pipeline Cybersecurity Directives
1 source controls mapped|1 target controls covered
2%
ISO 13485
1 source controls mapped|1 target controls covered
2%
PDPA Thailand
1 source controls mapped|1 target controls covered
2%
Bahrain PDPL
1 source controls mapped|1 target controls covered
2%
ISO 27799
1 source controls mapped|1 target controls covered
2%
Spain ENS
1 source controls mapped|3 target controls covered
2%
Singapore AI Governance Framework
1 source controls mapped|1 target controls covered
2%
SOC for Cybersecurity - Cybersecurity Risk Management Examination
1 source controls mapped|1 target controls covered
2%
Personal Data Act (personopplysningsloven)
1 source controls mapped|1 target controls covered
2%
ISO/IEC 27557:2022 - Organisational Privacy Risk Management
1 source controls mapped|2 target controls covered
2%
ASIS SPC.1-2009 - Organizational Resilience Standard
1 source controls mapped|1 target controls covered
2%
NIST SP 800-190
1 source controls mapped|1 target controls covered
2%
Zambia Data Protection Act (2021)
1 source controls mapped|1 target controls covered
2%
AS9100D - Aerospace Quality Management System
1 source controls mapped|2 target controls covered
2%
ISO/IEC 27003:2017
1 source controls mapped|2 target controls covered
2%
ISO/IEC 29147:2018
1 source controls mapped|1 target controls covered
2%
TISAX - Trusted Information Security Assessment Exchange
1 source controls mapped|2 target controls covered
2%
Telecommunications Sector Security Reforms (TSSR)
1 source controls mapped|2 target controls covered
2%
Protective Security Policy Framework (PSPF) Release 2024
1 source controls mapped|2 target controls covered
2%
NIST AI Risk Management Framework (AI RMF 1.0)
1 source controls mapped|3 target controls covered
2%
POPIA
1 source controls mapped|1 target controls covered
2%
UK FCA/PRA Operational Resilience Framework
1 source controls mapped|1 target controls covered
2%
GDPR
1 source controls mapped|1 target controls covered
2%
Tennessee IPA
1 source controls mapped|1 target controls covered
2%
Turkey KVKK
1 source controls mapped|1 target controls covered
2%
FBI CJIS Security Policy
1 source controls mapped|1 target controls covered
2%
AS9100D:2016 - Quality Management Systems for Aviation, Space, and Defence
1 source controls mapped|1 target controls covered
2%
Papua New Guinea National Cybersecurity Policy & Cybercrime Act (2016)
1 source controls mapped|3 target controls covered
2%
RBI Cybersecurity Framework for Banks
1 source controls mapped|3 target controls covered
2%
Vietnam PDPD
1 source controls mapped|1 target controls covered
2%
UNICEF Policy Guidance on AI for Children (2021)
1 source controls mapped|1 target controls covered
2%
Vermont Artificial Intelligence and Consumer Data Act (AICDA)
1 source controls mapped|1 target controls covered
2%
ISO 26262:2018 - Functional Safety for Road Vehicles
1 source controls mapped|1 target controls covered
2%
Philippines DPA
1 source controls mapped|1 target controls covered
2%
Switzerland FADP
1 source controls mapped|1 target controls covered
2%
SANS Incident Handler's Handbook and PICERL Methodology
1 source controls mapped|1 target controls covered
2%
ISO/IEC 27031:2011
1 source controls mapped|1 target controls covered
2%
SQF Code Edition 9 - Safe Quality Food
1 source controls mapped|2 target controls covered
2%
Security of Critical Infrastructure Act 2018 (SOCI)
1 source controls mapped|1 target controls covered
2%
ISO 41001:2018 - Facility Management Systems
1 source controls mapped|1 target controls covered
2%
ISO 39001:2012 - Road Traffic Safety Management
1 source controls mapped|1 target controls covered
2%
ISO 50001:2018 - Energy Management Systems
1 source controls mapped|1 target controls covered
2%
ISO 22313:2020 - Guidance on Business Continuity Management Systems
1 source controls mapped|1 target controls covered
2%
Singapore Government Instruction Manual on ICT&SS Management (IM8)
1 source controls mapped|1 target controls covered
2%
Azure Security Benchmark
1 source controls mapped|1 target controls covered
2%
EASA Part-IS - Information Security in Aviation
1 source controls mapped|2 target controls covered
2%
AWS Well-Architected Security Pillar
1 source controls mapped|1 target controls covered
2%
NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements
1 source controls mapped|1 target controls covered
2%
Saudi Arabia PDPL
1 source controls mapped|1 target controls covered
2%
Uruguay DPL
1 source controls mapped|1 target controls covered
2%
Virginia CDPA
1 source controls mapped|1 target controls covered
2%
NIST SP 800-53 Rev 5
1 source controls mapped|3 target controls covered
2%
BSI IT-Grundschutz
1 source controls mapped|3 target controls covered
2%
Singapore Cybersecurity Act 2018
1 source controls mapped|1 target controls covered
2%
Taiwan PDPA
1 source controls mapped|1 target controls covered
2%
South Korea Cloud Security Assurance Program (CSAP)
1 source controls mapped|1 target controls covered
2%
Switzerland New Federal Act on Data Protection (nFADP/nDSG, 2023)
1 source controls mapped|1 target controls covered
2%
Union Customs Code (UCC) - Regulation (EU) No 952/2013
1 source controls mapped|2 target controls covered
2%
UK AI Regulation Framework
1 source controls mapped|1 target controls covered
2%
UK Age Appropriate Design Code (Children's Code)
1 source controls mapped|1 target controls covered
2%
PDPA Singapore
1 source controls mapped|1 target controls covered
2%
ISO 27017
1 source controls mapped|1 target controls covered
2%
UK GDPR (UK General Data Protection Regulation)
1 source controls mapped|1 target controls covered
2%
Privacy Act 2020
1 source controls mapped|1 target controls covered
2%
Qatar DPL
1 source controls mapped|1 target controls covered
2%
APPI
1 source controls mapped|1 target controls covered
2%
AICPA Privacy Management Framework (PMF)
1 source controls mapped|1 target controls covered
2%
Oregon Consumer Privacy Act
1 source controls mapped|1 target controls covered
2%
ISO 27018
1 source controls mapped|1 target controls covered
2%
UK Defence Standard 05-138 - Cyber Security for Defence Suppliers
1 source controls mapped|2 target controls covered
2%
Vietnam Law on Cybersecurity (No. 24/2018/QH14)
1 source controls mapped|1 target controls covered
2%
Saudi PDPL
1 source controls mapped|1 target controls covered
2%
Authorised Economic Operator (AEO) Programmes - Global Standards
1 source controls mapped|1 target controls covered
2%
APRA CPS 230 Operational Risk Management
1 source controls mapped|1 target controls covered
2%
APRA SPS 220 Risk Management (Superannuation)
1 source controls mapped|1 target controls covered
2%
UK Security and Emergency Measures Direction (SEMD) - Water Industry
1 source controls mapped|1 target controls covered
2%
Privacy Act 1988 (Australia)
1 source controls mapped|1 target controls covered
2%
Rwanda Law No. 058/2021 Relating to the Protection of Personal Data
1 source controls mapped|1 target controls covered
2%
Peru Personal Data Protection Law (Law No. 29733)
1 source controls mapped|1 target controls covered
2%
Turkey Personal Data Protection Law (KVKK - Law No. 6698)
1 source controls mapped|1 target controls covered
2%
Ukraine Law on Personal Data Protection (Law No. 2297-VI)
1 source controls mapped|1 target controls covered
2%
Uzbekistan Law on Personal Data (No. ZRU-547)
1 source controls mapped|1 target controls covered
2%
Serbia Law on Personal Data Protection (2018)
1 source controls mapped|1 target controls covered
2%
SEC Cybersecurity Disclosure Rules
1 source controls mapped|1 target controls covered
2%
Singapore Payment Services Act (PSA) - Digital Payment Token Regulation
1 source controls mapped|1 target controls covered
2%
IAIS Insurance Core Principles (ICPs)
1 source controls mapped|1 target controls covered
2%
Tonga Communications Act (2015) - Privacy & Data Protection
1 source controls mapped|1 target controls covered
2%
SA8000:2014 - Social Accountability Standard
1 source controls mapped|1 target controls covered
2%
UK Construction (Design and Management) Regulations 2015 (CDM 2015)
1 source controls mapped|3 target controls covered
2%

Frequently Asked Questions

What is UK Modern Slavery Act 2015?

UK Modern Slavery Act 2015 is a compliance framework from United Kingdom with 26 domains and 41 controls. The UK Modern Slavery Act 2015 is landmark legislation addressing slavery, servitude, forced labour, and human trafficking. Part 6, Section 54 (Transparency in Supply Chains) requires commercial organisations with annual turnover of GBP 36 million or more to publish an annual modern slavery statement describing steps taken to ensure slavery and trafficking are not occurring in their business or supply chains. The Home Office maintains a Modern Slavery Statement Registry. The Act also established the Independent Anti-Slavery Commissioner. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

How many controls does UK Modern Slavery Act 2015 have?

UK Modern Slavery Act 2015 has 41 controls organised across 26 domains. The largest domains are Victim Protection and Support (5 controls), Anti-Slavery Commissioner and Governance (4 controls), Offences (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

What frameworks does UK Modern Slavery Act 2015 map to?

UK Modern Slavery Act 2015 maps to 139 other compliance frameworks. The top mapping partners are SASB Standards (ISSB Integrated) (12% coverage), SASB Standards (12% coverage), UNESCO Recommendation on the Ethics of AI (10% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I get started with UK Modern Slavery Act 2015 compliance?

Start your UK Modern Slavery Act 2015 compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about UK Modern Slavery Act 2015 requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 41 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 701 frameworks.

Get Started Free →

Free forever — no credit card required