+1 w/Don and WCNA. Since you're 8 years in. I'd grab the CISSP. If you end up taking an auditing role, I'd go for CISA once you hit the infosec job experience requirement.
For Incident Handling, you might want to look into some network and computer forensics material; there's tons of forensics experts on this forum floating around and I'm sure they'll chime in soon. Definitely take a look at the DoD 8570 requirements if you decide to get into government contracting:
http://www.giac.org/certifications/dodd-8570/Contracting itself is a whole other topic of conversation but if you're looking for a quick fix, it's one thing to consider.
Sil had a great forum post regarding the different types of InfoSec roles and certs he believed had the most impact when it came to actually learning the material:
http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,7836.msg42104/There's a thread that started a little bit ago about CISSP study strategies:
http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,7863.msg43431/topicseen,1/#newHope this all helps
