Hello @Sebastian Urena Nembhard ,
Thank you for posting your query on Microsoft Q&A. Intune policies recognize only Azure AD security groups. As a result, exclusion on inclusion via assignment is possible for them. However, it won't be possible to apply a policy specific to a specific non-admin local group.
As a workaround I would suggest promoting 1 AAD user as local admin on all AAD joined machines and exclude it from the policy.
Please do let me know if you have any further queries in the comments section.
Thanks,
Akshay Kaushik
Please "Accept the answer", "Upvote" and rate your experience if the suggestion works as per your business need. This will help us and others in the community as well.