[BE] Add audit event for block_group_branch_modification

Why are we doing this work

When a warn mode policy gets defined on a top-level group or on the CSP group, we need to create an audit event if a group-level protected branch is affected (which currently are only supported on top-level groups).

Edited by Dominic Bauer