
Joel Hurford
Verified Expert in Project Management
Project Manager
Williamsburg, VA, United States
Toptal member since November 15, 2021
Joel has 30+ years of experience in technical program delivery, emphasizing infrastructure and SaaS solutions in communications, retail, government, and pharmaceutical sectors. In addition to leading IT and IT security in major US government departments, Joel was a solution architect with Accenture for 5+ years. With 12 active certifications, Joel provides program management, solution architecture, and organizational change management to ensure the success of client technology investments.
Project Highlights
Expertise
- Business Management
- Enterprise Architecture
- IT
- IT Security
- IT Service Management (ITSM)
- Project Management
- ServiceNow
- VMware ESXi
Work Experience
Director of IT Programs
United States Department of Health and Human Services
- Joined HHS as a contractor team lead and was subsequently hired to lead the IT infrastructure for a nationwide 2,000 member law enforcement organization.
- Received a promotion one year later to director of IT programs, overseeing all IT projects and a $50 million annual IT investment portfolio for the 6,500-member Office of the Assistant Secretary for Health, which oversees the surgeon general.
- Deployed multiple instances of ServiceNow ITSM, ITBM, and ITOM, achieving an MPV and organization training in under six months.
- Deployed multiple transformational POC technologies, including Cisco SD-WAN (Viptela), VMware Horizon, VMware disaster recovery as a service, VMware NSX, and attribute-based access control (ABAC) with Radiant Logic and Axiomatics.
- Migrated 300 physical and remote-hosted virtual servers onto VMware Distributed Resource Cluster; reduced Oracle licensing costs by 40% and eliminated environment-related downtime in the subsequent 12 months.
- Configured Equinix data center direct connections to Microsoft O365 and AWS to relieve 80% of the load on border gateways and firewalls.
Principal
Mitsis Information Technology Services LLC
- Completed the inventory and upgrade of 300 servers to new hardware and VMware ESXi 6.x at the US Marine Corps Network Operations and Security Center (MCNOSC) and upgraded NetApp clusters to ONTap 8.2.
- Securely enabled an internal US government case management system for access by Department of Justice collaboration partners through Microsoft Azure Application Proxy and two-factor authentication.
- Prevented the shutdown of a $100-million annual revenue eCommerce system at US Mint by resolving payment card industry (PCI) audit findings. Architected and implemented a security control overlay for a legacy AS/400 system, including Imperva WAF.
- Deployed and trained the US Transportation Security Administration (TSA) on enterprise architecture modeling with Mega. Accomplished initial modeling, including full representation of all IT assets and their communications.
Director of Civilian Programs
ManTech | Knowledge Consulting Group
- Led a successful $29 million proposal for the Department of Homeland Security (DHS) continuous diagnostics and mitigation (CDM) program, which relied on Microsoft Project Server Online for a 180,000-hour delivery plan.
- Deployed Imperva Web Application Firewall at Virginia Commonwealth University (VCU) and Publix Supermarkets.
- Designed the cloud-based ServiceDesk and learning management solutions to meet the organizational training requirements of the DHS CDM delivery.
Chief Information Security Officer
United States Department of the Interior
- Managed all elements of security policy, training, and architecture for this 80,000-person federal department. Represented the DOI on the federal e-authentication executive steering committee.
- The DOI scored in the top third of agencies on the evaluation of its IT security policy implementation, which is done for all US federal departments. This was the DOI's first passing grade in the evaluation following my appointment as CISO.
- Represented the DOI IT security policy in federal court as part of a 10-year $100 billion lawsuit over royalty distributions (Cobell v Norton).
Director of IT Security
United States Patent and Trademark Office
- Joined the USTPO after a material weakness was determined in the financial controls of IT systems. Led the program that resolved the material weakness and scored USPTO the best IT security program in the Dept of Commerce in the next annual audit.
- Reduced IT security spending by 15% while growing the program and honors as the best IT security program at the Dept of Commerce.
- Authored IT security content for the exchange of patents between international bodies as part of a treaty. Contributed as an author to the US Government Smartcard Handbook.
- Was promoted to the chief information security officer at the US Department of the Interior after two years based on my performance in managing the 10,000 person USPTO IT security program.
IT Architect
Accenture
- Managed software releases for the BellSouth order management system that processed 30,000 orders per week. Earned the BellSouth Symphony award for excellence after reducing the defect inventory by 60% in four monthly releases.
- Led the migration of Windows desktops to the latest version, including software packaging for a policy-based installation at the 17,000-desktop UK Sainsbury's and the 6,000-desktop AstraZeneca Pharmaceuticals.
- Received the Accenture (Avanade) CEO Award for Excellence for leading successful enterprise migrations.
- Received a promotion within my first year at Accenture based on deploying a Citrix thin-client solution at Federal Express, including automating the regression testing of thin-client features.
Project History
USMint.gov | Payment Card Industry Compliance
Kept a $100-million per year eCommerce site online and compliant with PCI DSS requirements. Revenue continued to flow, and customer data was safe.
USMint.gov had simple Unix web servers with content and data management hosted on a legacy IBM AS/400. To meet PCI DSS requirements, many controls and procedures had to be created and layers inserted into the transaction workflow. I leveraged the breadth of my experience composing low-cost and rapidly implementable controls, including deploying and configuring Imperva Web Application Firewall (WAF); coded firewall rules analysis; conducted contingency plan technical tests; and audited backup media to escalate and resolve dozens of missing volumes.
Within four months, and before fines commenced, US Mint received a clean PCI DSS audit.
HHS Office of Inspector General | Data Center Consolidation
Led the migration of 300 physical and virtual servers and the support NetApp Storage Area Network to highly available Equinix managed data centers with Azure and AWS Direct Connects.
I composed the plan and executed the technical details of virtualizing the physical servers and migrating provider-hosted virtual servers to two highly connected Equinix data centers with demonstrated failover using vSphere Site Recovery Manager (SRM).
All plans have issues, and ours were blocked replication traffic from the prior server-hosting provider or the need for expanded power whips to allow SAN and HP C7000 converged chasses in adjacent racks. I quickly identified and resolved these risks—hand-carry local NAS configured with iSCSI, 220V 30A circuits. The point isn't to have me help you provision a data center; the point is that I maintain the necessary teams and communication to elaborate and resolve the full spectrum of risks a project may encounter.
In four months, HHS OIG reduced hosting costs by 30% even while enjoying superior performance of the migrated virtual machines on a vSphere cluster. Another $500,000 was saved on Oracle licensing by licensing a subset of the DRS cluster using host affinity policies.
Sainsbury's UK Directory Services | Windows Upgrade
Deployed a 17,000-desktop upgrade including Active Directory, Group Policy, and Service Desk readiness.
1. Profiling end-users for existing applications to ensure they are most productive after migration.
2. Packaging applications for automated deployment based on profile mappings.
3. Copious communication to end-users and the service desk on what to expect and what legacy applications will not survive the migration.
I led the Active Directory, Group Policy, Application Packaging, Endpoint upgrade, and Service Desk teams. The project was wildly successful in terms of timeliness and transformation of Sainsbury's end-user experience. It was awarded the Accenture (Avanade) CEO Award.
The Endpoint upgrade team lead could not maintain user profile updates because data on thousands of users was collected in Microsoft Excel, but the automated profile migration tool did not have a batch import capability. Using Visual Test scripting and Windows Accessibility features to identify tool-user interface controls, I automated transcription and reduced three-day manual batches to one hour.
Education
Master's Degree in Computer Engineering
United States Air Force Institute of Technology - Dayton, OH, USA
Bachelor's Degree in Computer Science
United States Air Force Academy - Colorado Springs, CO, USA
Certifications
Certified Scrum Master
Scrum Alliance
IT Service Management Certified Implementation Specialist (CIS)
ServiceNow
Sophos Certified Architect
Sophos
Certified System Administrator
ServiceNow
Sophos Certified Engineer
Sophos
VMware Certified Professional
VMware
VMware Certified Associate
VMware
VMware Certified Professional
VMware
Certified Penetration Tester (CPT)
Information Assurance Certification Review Board (IACRB)
ITIL Foundation Certification
Exin
Project Management Professional (PMP)
Project Management Institute (PMI)
Microsoft Certified Administrator
Microsoft
Microsoft Certified Engineer
Microsoft
Certified Information System Security Professional
(ISC)²
Microsoft Certified Developer
Microsoft
Skills
Tools
VMware, Office 365, VMware NSX, VMware Horizon, Terminal, Visual Studio, Microsoft Visual C++, Jira, Splunk
Paradigms
Penetration Testing, TOGAF, Agile, Scrum
Platforms
SharePoint, Windows 7, Citrix
Other
Sophos Firewall, PMI, Project Management, CISSP, ITSM, Firewalls, Incident Management, IT Service Management (ITSM), VMware ESXi, MCSE, MCSA, Microsoft Project Online, IT Security, IT Projects, ServiceNow, C, AI Programming, Antivirus Software, Web Application Firewall (WAF), Capacity Planning, SLA Management, Business Management, Project Portfolio Management (PPM), IT Contracts, Imperva Incapsula, Mega, Enterprise Architecture, NIST, Policy Development, Imperva Web Application Firewall (WAF), VMware Site Recovery Manager (SRM), IT, Database Management, MCSD, McAfee, Check Point, Cisco, Visual Regression Testing, Project Management Professional (PMP), PCI Compliance, Scrum Master, Lean IT, Certified ScrumMaster (CSM)
How to Work with Toptal
Toptal matches you directly with global industry experts from our network in hours—not weeks or months.
Share your needs
Choose your talent
Start your risk-free talent trial
Top talent is in high demand.
Start hiring