With the security systems in place that after 3 tries lock the person out of 30 min. It makes anything other than the top 200 most common passwords very hard to use. Even that list of 200 would take at least 33.5 hours to test. The full dictionary would take about 9 years. So having a password on the list of 200 most common would be a good idea because it would be easy to guess as would name and dates associated with your company and your personal information, dictionary would be useless.

I'm seeing more and more password boxes that have the option to see what your are typing, especially with long password requirements.
