Id assume his basis is on the security of IIS and FTP as a whole.
I used the Gene6 FTP server software when I used to host gaming servers. It's pretty easy to setup and they claim that it's fairly safe. I tried using the FTP software built into Windows 2003 Server, but I could never get it working properly...