I haven't tried this myself and would probably take some testing but,
try going into the configuration profile with the password policy >
Scope tab > Exclusions section. Here you use the "Directory
Service/Local Users" section and exclude the JAMF-ma...