Sure you can do it now.

Push a tokenized script and batch file with Shawn's RUNNAS with an encrypted command to go out to the network and grab or run what you want, then when done delete those files.

All is hidden and silent so unless someone is actively snooping on the system the risk of locting or using the credentials is very low.