ATA currently does not have such an option. But as soon as a suspicious activity occurs, ATA will ask you this question: "Is this a normal behavior for the account listed below?".
You can only add exclusions for DNS Reconnaissance and Pass-the-Ticket IP addresses.