in EOP, you should use the Tenant Allow/Block List and only use that if you can:
At some point, you HAVE to use a allow mechanism if you want to ensure these messages get through.
You can create the allow via submission:
They will still be scanned for malware and the Tenant Allow list will teach Exchange Online rather than a transport rule that just allows the messages.
Otherwise, a transport rule