From this post Block outgoing connections on RHEL7/CentOS7 with firewalld? :
firewall-cmd --permanent --direct --add-rule ipv4 filter OUTPUT 0 -p tcp -m tcp --dport=9000 -j DROP
firewall-cmd --permanent --direct --add-rule ipv4 filter OUTPUT 1 -j ACCEPT
It should work after a running rules reload :
firewall-cmd --reload
Before this command this will not be applied.