Hi Brian,
Policy Manager should be able to write this policy to each switch, but the NAC will need to be modified to integrate with this non default role you have created.
The policy on NAC would need to be matched up to what is on the switch (as configured with Policy Manager), so that the return radius policy mappings get assigned to the correct role for user or device types that authenticate as phones etc.
This following article may provide some guidance on how to view and modify these NAC settings for what the switch needs to apply the 'phone' role to the switch.