First install your application normally, adding driver publisher when prompted.
You can find the newly added driver by going to the following directory and sorting by modified date:
Find a digitally signed file in the relevant driver folder and do:
Right click > properties > Digital Signatures > Details > View Certificate > Details > Copy to File...
To trust publisher during SCCM deployment run the following cmd line as a dependency:
certutil -addstore "TrustedPublisher" exportedcert.cer