Hardware recommendation

We are an academic institution with 70 employees (and about this number of PC-s) consisting of 8 groups of users mixed in various rooms. We are preparing to upgrade our network from 100Mbit to Gbit and VLAN assignment. Currently each room is connected to the backbone (a Cisco Catalyst 2950 L2 100Mbit switch) by their own SOHO wireless routers and therefore members of the same group are separated from each other and the instruments and data (a lot of USB sticks traveling around).

Our total network utilization on the outside is 5-20Mbps peeking occasionally to 80 Mbps (file transfers). Network traffic to the outside is normal web browsing, Skype and rarely bigger file transfers (~30 Gb uploads or downloads). There is no VoIP or video streaming (currently). Video surveillance is currently on their own cables completely independent of the network (no need to change that).

We would like to have VLANs so everyone is in their own group network and to have access to group shared data and data from the instruments.

And now the questions:
We were suggested to acquire a ccr-1016 but I am thinking to settle for a RB2011UiAS-RM or RB3011UiAS-RM. Are they up for the task and which one to choose? Additionally I need to add a couple of L2 managed switches so everyone can be wired to their VLAN regardless where they are positioned (Allied Telesis switches maybe?).

Another headache is the WiFi. The simplest solution would be a number of cAP2n with 8 virtual APs on each linking to the corresponding VLANs, which I am told is not a good Idea. Has anyone used such a setting?

I know a thing or two about networks and computers but we will hire an IT guy for the job (but I would like to be a bit more informed before we start).
So, any suggestions are welcome!