You should be able to add a login from another domain. You might need an AD trust of some sort.
Easier to add the login with SQL Server (sql auth), set a reminder on yours (and someone else's who's a DBA) calendar to check every 30 days or so if this person still needs access.