As the logging of user activities involving the creation, alteration, or dropping of a USER can provide forensic evidence about a pattern of suspect/unauthorized activities, the audit capability should be set according to the needs of the organization.
Solution
Execute the following SQL statement to remediate this setting. AUDIT DROP USER;