To minimize risks of actually using FTP at all, you should configure/change to software that will allow you to lock IP / account after number of failed attempts. This will prevent brute forcing your server.