This is really a function of the Radius server that you are using. If the radius server is able to take into account both factors (MAC + AD account) when deciding to provide or deny access then yes.
Windows built-in radius server (NPS) is not able to do that. This can be performed with more advanced radius servers, such as Cisco ISE or others.
If what you are trying to achieve is that employees login onto wireless (AD auth) only with their corporate issued PCs then I would suggest to use Machine Authentication rather than username/password. With Machine Authentication the Radius server verifies with AD if that machine belongs to the domain. Then the user will be validated when they login into the machine. Assuming that this is a Windows environment.