Iskinner, you might want to read that article Seaboe linked. You don't need to worry so much about brute force attacks as you do about dictionary based attacks, which are informed by password frequency. It's extremely common for a user's password to contain or be based on the name of the site or service. So that part of your password is going to be very guessable, even if it is long.
