First, make / model of device this is from?
Second, what exactly are you trying to accomplish here?
From an initial look, you may want to add a "deny any any log" at the end of both your
OUTBOUND and INBOUND ACLs for two reasons, a) for debugging / troubleshooting and
b) from a security perspective. Otherwise conceptually, you're on the right track for
a default deny ruleset.