It all depends oh how your current policy sets are configured in ISE and whether you are allowed to modify them.
You can add the iPad via MAB, use BYOD portal for authentication, deploy certificate (assuming a PKI) or integrate via a third party Mobile Device Manager if you have one. Those options are in order of least to most secure. There are a few others as well but those are the most common.