This is a mistake you only make once, which is why I now have a dedicated dmz network for work equipment that doesn't use the pihole for DNS resolution.
Interesting idea, may I know what router you're using which supports this feature? One of the things I do like about having work related DNS going through pihole is I can create custom responses to trick my laptop into thinking it's on the office network, which disables our VPN requirement. š