Look into the "Autoboot" feature described in your EEPC administration documentation - that's designed to do what you ask.
I did see that but just wasn't sure how I can just apply to one machine. I'm thinking that duplicating that policy with that change made in it and specifically tagging it to that machine should work? I shouldn't have to decrypt anything?
You will not need to decrypt. You can create a new policy with autoboot enabled and break inheritance for that single system or use Policy Assignment Rules and use tagging.
Alternatively you can use the Temporary Autoboot feature. This must be enabled in the policy first then use the EpeTemporaryAutoboot.exe tool to enable autoboot on a specific system. This is covered in PD24867 - DE 7.1 Product Guide on page 76.