That's currently not supported directly. What we recommend is to have an Okta Sign-On Policy for Admins that is a bit more stringent. For example, you may choose to prompt admins for MFA every time they log into the Okta portal. In addition you can configure a sign-on rule which reduces the session duration for Admin users. This allows you to improve security without impacting standard end users.