https://www.owasp.org/index.php/Blocking_Brute_Force_Attacks
I do not believe SSL/HTTPS would make any difference with Brute Force Attacks. BPS Pro JTC Anti-Spam|Anti-Hacker on the other hand is 100% effective at stopping all automated Brute Force Login attacks. A CAPTCHA and spambot approach to Brute Force Login protection are the optimum methods for stopping Brute Force Attacks.