If you have 802.1x working then you would create a new radius policy, place it in front of the existing policy to only authenticate that user group. It’s all about modifying the policies and placing them in the proper order. Hope that helps.
-Scott
*** Please rate helpful posts ***